qnap

613 tracked vulnerabilities.

CVE-2023-32972 LOW
QNAP QTS/QuTS Authenticated Stack-based Buffer Overflow
Oct 06, 2023
CVSS 3.8
EPSS 0.00
CVE-2023-32971 LOW
QNAP QTS 4.5.0-4.5.4.2466 and 5.0.0-5.0.1.2424 - Authenticated Stack-based Buffer Overflow
Oct 06, 2023
CVSS 3.8
EPSS 0.00
CVE-2023-23371 MEDIUM
QVPN 2.2.0-2.2.0.0823 - Authenticated Cleartext Transmission of Sensitive Information
Oct 06, 2023
CVSS 5.2
EPSS 0.00
CVE-2023-23370 MEDIUM
QVPN 2.1.0-2.1.0.0518 - Authenticated Credential Exposure via Local Access
Oct 06, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-23366 HIGH
Music Station 5.3.0-5.3.21 - Authenticated Path Traversal
Oct 06, 2023
CVSS 7.7
EPSS 0.00
CVE-2023-23365 HIGH
QNAP Music Station 5.3.0-5.3.21 - Authenticated Path Traversal
Oct 06, 2023
CVSS 7.7
EPSS 0.00
CVE-2023-23364 HIGH
QNAP Multimedia Console < 1.4.7 - Remote Code Execution via Buffer Overflow
Sep 22, 2023
CVSS 8.1
EPSS 0.01
CVE-2023-23363 HIGH
QNAP QTS 4.3.3-4.3.3.2420 - Remote Code Execution via Buffer Overflow
Sep 22, 2023
CVSS 8.1
EPSS 0.01
CVE-2023-23362 HIGH
QNAP QTS 4.5.4-4.5.4.2374 and QTS 5.0.1-5.0.1.2376 - Authenticated OS Command Injection
Sep 22, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-34973 LOW
QNAP QTS 5.0.1-5.0.1.2424 and QTS 5.1.0-5.1.0.2443 - Insufficient Entropy
Aug 24, 2023
CVSS 3.1
EPSS 0.00
CVE-2023-34972 LOW
QNAP QTS 5.0.1-5.0.1.2424 and QuTS hero h5.1.0-h5.1.0.2423 - Cleartext Transmission of Sensitive Information
Aug 24, 2023
CVSS 3.5
EPSS 0.00
CVE-2023-34971 HIGH
QNAP QTS 4.5.4-4.5.4.2467 and QuTS hero h4.5.4-h4.5.4.2476 - Inadequate Encryption Strength
Aug 24, 2023
CVSS 7.1
EPSS 0.00
CVE-2023-23355 MEDIUM
QNAP QVR - Authenticated OS Command Injection
Mar 29, 2023
CVSS 6.6
EPSS 0.01
CVE-2022-27600 MEDIUM
QNAP QTS 4.5.1-4.5.4.2280 and QTS 5.0.1-5.0.1.2277 - Denial of Service via Uncontrolled Resource Consumption
Dec 19, 2024
CVSS 6.8
EPSS 0.01
CVE-2022-27595 HIGH
QVPN < 2.0.0.1316 - Uncontrolled Search Path Element
Dec 19, 2024
CVSS 7.8
EPSS 0.00
CVE-2022-27592 MEDIUM
QVR Smart Client 2.4.0-2.4.0.0570 - Authenticated Unquoted Search Path or Element
Sep 06, 2024
CVSS 6.7
EPSS 0.00
CVE-2022-27599 MEDIUM
QVR Pro Client < 2.3.0.0420 - Authenticated Sensitive Information Disclosure via Log File
Sep 08, 2023
CVSS 6.7
EPSS 0.00
CVE-2022-27598 LOW
QNAP QTS < 5.0.1.2346 and QuTS hero < h5.0.1.2348 - Authenticated Out-of-bounds Read
Mar 29, 2023
CVSS 2.7
EPSS 0.00
CVE-2022-27597 LOW
QNAP QVR - Authenticated Out-of-bounds Read
Mar 29, 2023
CVSS 2.7
EPSS 0.00
CVE-2022-27596 CRITICAL
QNAP QTS 5.0.1-5.0.1.2234 and QuTS hero h5.0.1-h5.0.1.2248 - SQL Injection
Jan 30, 2023
CVSS 9.8
EPSS 0.21
CVE-2022-27593 CRITICAL KEVNUCLEI
QNAP Photo Station < 5.2.14 - Arbitrary File Write
Sep 08, 2022
CVSS 10.0
EPSS 0.93
CVE-2022-27588 CRITICAL
QVR < 5.1.6 - OS Command Injection
May 05, 2022
CVSS 9.8
EPSS 0.01
CVE-2021-34360 MEDIUM
QNAP NAS Proxy Server 1.4.0-1.4.1 - Cross-Site Request Forgery
May 26, 2022
CVSS 5.3
EPSS 0.00
CVE-2021-44057 HIGH
QNAP Photo Station < 5.4.13 - Improper Authentication
May 05, 2022
CVSS 7.1
EPSS 0.00
CVE-2021-44056 HIGH
QNAP Video Station < 5.1.8 - Improper Authentication
May 05, 2022
CVSS 7.1
EPSS 0.00