qnap

613 tracked vulnerabilities.

CVE-2020-2496 MEDIUM
QNAP QTS and QuTS hero - Cross-Site Scripting in File Station
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2495 MEDIUM
QNAP QTS and QuTS hero - Cross-Site Scripting in File Station
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2494 MEDIUM
QNAP Music Station < 5.3.13 - Cross-Site Scripting
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2493 MEDIUM
QNAP Multimedia Console < 1.1.5 - Cross-Site Scripting
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2491 MEDIUM
QNAP Photo Station < 6.0.12 - Cross-Site Scripting
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2492 HIGH
QNAP QTS < 4.4.3.1421 - Remote Code Execution
Nov 16, 2020
CVSS 7.2
EPSS 0.03
CVE-2020-2490 HIGH
QNAP QTS < 4.4.3.1421 - Remote Command Injection
Nov 16, 2020
CVSS 7.2
EPSS 0.01
CVE-2020-2500 CRITICAL
QNAP Helpdesk < 3.0.1 - Improper Access Control via API Key Exposure
Jul 01, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-7198 CRITICAL
QNAP QTS and QuTS hero - OS Command Injection
Dec 10, 2020
CVSS 9.8
EPSS 0.03
CVE-2019-7195 CRITICAL KEVNUCLEI
QNAP Photo Station - Path Traversal
Dec 05, 2019
CVSS 9.8
EPSS 0.94
CVE-2019-7194 CRITICAL KEVNUCLEI
QNAP Photo Station - Path Traversal
Dec 05, 2019
CVSS 9.8
EPSS 0.94
CVE-2019-7193 CRITICAL KEV
QNAP QTS - Remote Code Execution via Improper Input Validation
Dec 05, 2019
CVSS 9.8
EPSS 0.26
CVE-2019-7192 CRITICAL KEVNUCLEI
QNAP Photo Station - Info Disclosure
Dec 05, 2019
CVSS 9.8
EPSS 0.94
CVE-2019-7185 MEDIUM
QNAP Music Station < 5.3.5 - Stored Cross-Site Scripting
Dec 05, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-7184 MEDIUM
QNAP Video Station < 5.4.3 - Stored Cross-Site Scripting
Dec 05, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-7183 CRITICAL
QNAP QTS - Improper Link Resolution Before File Access
Dec 05, 2019
CVSS 9.8
EPSS 0.01
CVE-2019-7201 HIGH
QNAP NetBak Replicator <4.5.12.1108 - Privilege Escalation
Dec 04, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-7197 MEDIUM
QNAP QTS Admin Console - Stored Cross-Site Scripting
Dec 04, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-7181 HIGH
myQNAPcloud Connect <1.3.3.0925 - Buffer Overflow
May 09, 2019
CVSS 7.5
EPSS 0.13
CVE-2018-19957 MEDIUM
QNAP QTS < 4.5.4.1715, QuTS hero < h4.5.4.1771, QuTScloud < c4.5.6.1755 Clickjacking
Sep 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2018-19942 MEDIUM
QTS < 4.2.6 - Cross-Site Scripting in File Station
Apr 16, 2021
CVSS 6.1
EPSS 0.00
CVE-2018-19945 CRITICAL
QNAP QTS 4.3.4-4.3.6 - Arbitrary File Rename via Path Traversal
Dec 31, 2020
CVSS 9.1
EPSS 0.00
CVE-2018-19944 HIGH
QTS < 4.4.3.1354 - Cleartext Transmission of Sensitive Information
Dec 31, 2020
CVSS 7.5
EPSS 0.00
CVE-2018-19941 HIGH
QNAP QTS/QuTS Cleartext Storage of Sensitive Information in Cookie
Dec 31, 2020
CVSS 7.5
EPSS 0.00
CVE-2018-19956 MEDIUM
QNAP Systems Inc. Photo Station <5.7.11, <6.0.10 - XSS
Nov 02, 2020
CVSS 6.1
EPSS 0.00