Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
qnap vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2023-23362
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability allows remote authenticated users to execute commands via susceptible QNAP devices. We have already fixed the vulnerability in the following versions: QTS 5.0...
Qnap Qutscloud
Qnap Qts
Qnap Quts Hero
4.3
CVSSv3
CVE-2023-39301
A server-side request forgery (SSRF) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to read application data via a network. We have already fixed the vulnerability in the following ...
Qnap Qts
Qnap Quts Hero
Qnap Qutscloud
7.5
CVSSv3
CVE-2018-19941
A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an malicious user to access sensitive information stored in cleartext inside cookies via certain widely-available tools. QNAP have already fixed this vulnerability in the following versi...
Qnap Qts
Qnap Quts Hero
Qnap Qutscloud
5.4
CVSSv3
CVE-2021-28806
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows malicious users to inject malicious code. This issue affects: QNAP Systems Inc. QTS versions before 4.5.3.1652 Build 20210428. QNAP Systems Inc. Q...
Qnap Qts
Qnap Quts Hero
Qnap Qutscloud
6.1
CVSSv3
CVE-2018-19957
A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTScloud. This vulnerability allows remote malicious users to launch privacy and security attacks. We have already fixed this vulnerability in the follow...
Qnap Qts
Qnap Quts Hero
Qnap Qutscloud
7.2
CVSSv3
CVE-2021-34343
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows malicious users to execute arbitrary code. We have already fixed this vulnerability in the following versions of QTS, QuTScloud...
Qnap Qts
Qnap Quts Hero
Qnap Qutscloud
4.7
CVSSv3
CVE-2024-21901
A SQL injection vulnerability has been reported to affect myQNAPcloud. If exploited, the vulnerability could allow authenticated administrators to inject malicious code via a network. We have already fixed the vulnerability in the following versions: myQNAPcloud 1.0.52 ( 2023/11/...
Qnap Qts 4.5.4.2627
Qnap Qts
Qnap Myqnapcloud
1 Article
4.9
CVSSv3
CVE-2023-32970
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to launch a denial-of-service (DoS) attack via a network. QES is not affected. We have already fix...
Qnap Quts Hero
Qnap Qts
Qnap Qutscloud
7.5
CVSSv3
CVE-2023-32974
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to read the contents of unexpected files and expose sensitive data via a network. We have already fixed the vulnerability in the fo...
Qnap Quts Hero
Qnap Qts
Qnap Qutscloud
8.8
CVSSv3
CVE-2021-28816
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows malicious users to execute arbitrary code. We have already fixed this vulnerability in the following versions of QTS, QuTScloud...
Qnap Qts
Qnap Quts Hero
Qnap Qutscloud
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-38002
CVE-2006-4304
CVE-2024-4336
CVE-2024-33437
CVE-2024-4340
CVE-2024-27956
privilege
insecure direct object reference
XSS
item search icon">CVE-2024-25938
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »