qnap
613 tracked vulnerabilities.
CVE-2020-2496
MEDIUM
QNAP QTS and QuTS hero - Cross-Site Scripting in File Station
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2495
MEDIUM
QNAP QTS and QuTS hero - Cross-Site Scripting in File Station
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2494
MEDIUM
QNAP Music Station < 5.3.13 - Cross-Site Scripting
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2493
MEDIUM
QNAP Multimedia Console < 1.1.5 - Cross-Site Scripting
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2491
MEDIUM
QNAP Photo Station < 6.0.12 - Cross-Site Scripting
Dec 10, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2492
HIGH
QNAP QTS < 4.4.3.1421 - Remote Code Execution
Nov 16, 2020
CVSS 7.2
EPSS 0.03
CVE-2020-2490
HIGH
QNAP QTS < 4.4.3.1421 - Remote Command Injection
Nov 16, 2020
CVSS 7.2
EPSS 0.01
CVE-2020-2500
CRITICAL
QNAP Helpdesk < 3.0.1 - Improper Access Control via API Key Exposure
Jul 01, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-7198
CRITICAL
QNAP QTS and QuTS hero - OS Command Injection
Dec 10, 2020
CVSS 9.8
EPSS 0.03
CVE-2019-7195
CRITICAL
KEVNUCLEI
QNAP Photo Station - Path Traversal
Dec 05, 2019
CVSS 9.8
EPSS 0.94
CVE-2019-7194
CRITICAL
KEVNUCLEI
QNAP Photo Station - Path Traversal
Dec 05, 2019
CVSS 9.8
EPSS 0.94
CVE-2019-7193
CRITICAL
KEV
QNAP QTS - Remote Code Execution via Improper Input Validation
Dec 05, 2019
CVSS 9.8
EPSS 0.26
CVE-2019-7192
CRITICAL
KEVNUCLEI
QNAP Photo Station - Info Disclosure
Dec 05, 2019
CVSS 9.8
EPSS 0.94
CVE-2019-7185
MEDIUM
QNAP Music Station < 5.3.5 - Stored Cross-Site Scripting
Dec 05, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-7184
MEDIUM
QNAP Video Station < 5.4.3 - Stored Cross-Site Scripting
Dec 05, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-7183
CRITICAL
QNAP QTS - Improper Link Resolution Before File Access
Dec 05, 2019
CVSS 9.8
EPSS 0.01
CVE-2019-7201
HIGH
QNAP NetBak Replicator <4.5.12.1108 - Privilege Escalation
Dec 04, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-7197
MEDIUM
QNAP QTS Admin Console - Stored Cross-Site Scripting
Dec 04, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-7181
HIGH
myQNAPcloud Connect <1.3.3.0925 - Buffer Overflow
May 09, 2019
CVSS 7.5
EPSS 0.13
CVE-2018-19957
MEDIUM
QNAP QTS < 4.5.4.1715, QuTS hero < h4.5.4.1771, QuTScloud < c4.5.6.1755 Clickjacking
Sep 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2018-19942
MEDIUM
QTS < 4.2.6 - Cross-Site Scripting in File Station
Apr 16, 2021
CVSS 6.1
EPSS 0.00
CVE-2018-19945
CRITICAL
QNAP QTS 4.3.4-4.3.6 - Arbitrary File Rename via Path Traversal
Dec 31, 2020
CVSS 9.1
EPSS 0.00
CVE-2018-19944
HIGH
QTS < 4.4.3.1354 - Cleartext Transmission of Sensitive Information
Dec 31, 2020
CVSS 7.5
EPSS 0.00
CVE-2018-19941
HIGH
QNAP QTS/QuTS Cleartext Storage of Sensitive Information in Cookie
Dec 31, 2020
CVSS 7.5
EPSS 0.00
CVE-2018-19956
MEDIUM
QNAP Systems Inc. Photo Station <5.7.11, <6.0.10 - XSS
Nov 02, 2020
CVSS 6.1
EPSS 0.00
Products
qts 272
quts_hero 223
qsync_central 62
qutscloud 62
file_station 48
photo_station 26
video_station 15
media_streaming_add-on 13
music_station 13
qurouter 12
helpdesk 11
qumagie 10
qvr 10
qulog_center 8
nas_proxy_server 7
q\'center 7
hybrid_backup_sync 6
notes_station_3 6
qvr_pro 6
license_center 5
multimedia_console 5
qunetswitch 5
qvr_elite 5
qvr_guard 5
qes 4
download_station 3
qcalagent 3
qufirewall 3
qvp-21a_firmware 3
qvp-41a_firmware 3
Quick Filters