CVE-2021-44051
- EPSS 1.8%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following...
CVE-2021-44052
- EPSS 0.42%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, and QTS. If exploited, this vulnerability allows remote attackers to traverse the file system to uni...
CVE-2021-44053
- EPSS 0.42%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in th...
CVE-2021-44054
- EPSS 0.21%
- Veröffentlicht 05.05.2022 17:15:10
- Zuletzt bearbeitet 21.11.2024 06:30:18
An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows attackers to redirect users to an untrusted page that contains malware. We have already fixed this vu...
CVE-2020-2498
- EPSS 0.15%
- Veröffentlicht 10.12.2020 04:15:12
- Zuletzt bearbeitet 21.11.2024 05:25:21
If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code in certificate configuration. QANP have already fixed these vulnerabilities in the following versions of QTS and QuTS hero. QuTS hero h4.5.1.1...