Skip to main content

Vendor/product archive

qnap / qvr CVEs

Beta · best-effort

10 CVEs tagged to qnap / qvr5 Critical, 3 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2025-52856

Published Aug 29, 2025

An improper authentication vulnerability has been reported to affect VioStor. If a remote attacker, they can then exploit the vulnerability to compromise the security of the syste…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-27597

Published Mar 29, 2023

A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remote authenticated administrators to get secret val…

CVSS 2.7 · Low
evidence mentions
1
Buzz score
11.9

CVE-2023-23355

Published Mar 29, 2023

An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote authenticated administrators to ex…

CVSS 6.6 · Medium

CVE-2022-27588

Published May 5, 2022

We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later

CVSS 9.8 · Critical
evidence mentions
4
Buzz score
22.6
Vendor/product tagsBeta · best-effort

CVE-2021-38686

Published Nov 26, 2021

An improper authentication vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows attackers to compromise the security of the syst…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-38685

Published Nov 26, 2021

A command injection vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have alr…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-34352

Published Oct 1, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-34351

Published Sep 27, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-34349

Published Sep 27, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We…

CVSS 7.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-34348

Published Sep 27, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1