Skip to main content

Vendor/product archive

qnap / qes CVEs

Beta · best-effort

4 CVEs tagged to qnap / qes1 Critical, 0 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2020-2505

Published Dec 24, 2020

If exploited, this vulnerability could allow attackers to gain sensitive information via generation of error messages. QNAP has already fixed these issues in QES 2.1.1 Build 20201…

CVSS 2.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-2504

Published Dec 24, 2020

If exploited, this absolute path traversal vulnerability could allow attackers to traverse files in File Station. QNAP has already fixed these issues in QES 2.1.1 Build 20201006 a…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-2503

Published Dec 24, 2020

If exploited, this stored cross-site scripting vulnerability could allow remote attackers to inject malicious code in File Station. QNAP has already fixed these issues in QES 2.1.…

CVSS 9.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-2499

Published Dec 24, 2020

A hard-coded password vulnerability has been reported to affect earlier versions of QES. If exploited, this vulnerability could allow attackers to log in with a hard-coded passwor…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1