Skip to main content

Vendor/product archive

qnap / notes_station_3 CVEs

Beta · best-effort

6 CVEs tagged to qnap / notes_station_32 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2024-38646

Published Nov 22, 2024

An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow local authenticated…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2024-38645

Published Nov 22, 2024

A server-side request forgery (SSRF) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote authenticated attackers to read…

CVSS 9.4 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-38644

Published Nov 22, 2024

An OS command injection vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote authenticated attackers to execute commands.…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-38643

Published Nov 22, 2024

A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote attackers to gain acce…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-27126

Published Sep 6, 2024

A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code vi…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-27122

Published Sep 6, 2024

A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code vi…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1