Skip to main content

Vendor archive

qnap CVEs

Beta · best-effort

636 CVEs tagged to vendor qnap80 Critical, 167 High, 265 Medium, 124 Low, 0 Unrated.

CVE-2023-50362

Published Apr 26, 2024

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenti…

CVSS 5.0 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-50361

Published Apr 26, 2024

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenti…

CVSS 5.0 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2023-47222

Published Apr 26, 2024

An exposure of sensitive information vulnerability has been reported to affect Media Streaming add-on. If exploited, the vulnerability could allow users to compromise the security…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-41291

Published Apr 26, 2024

A path traversal vulnerability has been reported to affect QuFirewall. If exploited, the vulnerability could allow authenticated administrators to read the contents of unexpected…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41290

Published Apr 26, 2024

A path traversal vulnerability has been reported to affect QuFirewall. If exploited, the vulnerability could allow authenticated administrators to read the contents of unexpected…

CVSS 4.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-21901

Published Mar 8, 2024

A SQL injection vulnerability has been reported to affect myQNAPcloud. If exploited, the vulnerability could allow authenticated administrators to inject malicious code via a netw…

CVSS 4.7 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2024-21900

Published Mar 8, 2024

An injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to execute commands…

CVSS 4.3 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2024-21899

Published Mar 8, 2024

An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to compromise the se…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2023-47221

Published Mar 8, 2024

A path traversal vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow authenticated administrators to read the contents of unexpect…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-34980

Published Mar 8, 2024

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-32969

Published Mar 8, 2024

A cross-site scripting (XSS) vulnerability has been reported to affect Network & Virtual Switch. If exploited, the vulnerability could allow authenticated administrators to inject…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-50358

Published Feb 13, 2024

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via…

CVSS 5.8 · Medium
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2023-47218

Published Feb 13, 2024

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via…

CVSS 5.8 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2023-50359

Published Feb 2, 2024

An unchecked return value vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local authenticated adminis…

CVSS 3.4 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-47568

Published Feb 2, 2024

A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to inject malicio…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-47567

Published Feb 2, 2024

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators…

CVSS 4.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-47566

Published Feb 2, 2024

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-47564

Published Feb 2, 2024

An incorrect permission assignment for critical resource vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow authenticated users t…

CVSS 8.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-47562

Published Feb 2, 2024

An OS command injection vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow authenticated users to execute commands via a network.…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2023-47561

Published Feb 2, 2024

A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-45037

Published Feb 2, 2024

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenti…

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-45036

Published Feb 2, 2024

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenti…

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-45035

Published Feb 2, 2024

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenti…

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-45027

Published Feb 2, 2024

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to read…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 351-375 of 636 CVEsPage 15 of 26