Vulnerabilities > Qnap
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-26 | CVE-2021-34360 | Cross-Site Request Forgery (CSRF) vulnerability in Qnap NAS Proxy Server A cross-site request forgery (CSRF) vulnerability has been reported to affect QNAP device running Proxy Server. | 8.8 |
2022-05-05 | CVE-2021-38693 | Path Traversal vulnerability in Qnap QTS and Qutscloud A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. | 5.3 |
2022-05-05 | CVE-2021-44051 | Command Injection vulnerability in Qnap Qts, Quts Hero and Qutscloud A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. | 8.8 |
2022-05-05 | CVE-2021-44052 | Link Following vulnerability in Qnap Qts, Quts Hero and Qutscloud An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, and QTS. | 8.1 |
2022-05-05 | CVE-2021-44053 | Cross-site Scripting vulnerability in Qnap Qts, Quts Hero and Qutscloud A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. | 6.1 |
2022-05-05 | CVE-2021-44054 | Open Redirect vulnerability in Qnap Qts, Quts Hero and Qutscloud An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. | 6.1 |
2022-05-05 | CVE-2021-44055 | Missing Authorization vulnerability in Qnap Video Station An missing authorization vulnerability has been reported to affect QNAP device running Video Station. | 9.8 |
2022-05-05 | CVE-2021-44056 | Improper Authentication vulnerability in Qnap Video Station An improper authentication vulnerability has been reported to affect QNAP device running Video Station. | 9.8 |
2022-05-05 | CVE-2021-44057 | Improper Authentication vulnerability in Qnap Photo Station An improper authentication vulnerability has been reported to affect QNAP device running Photo Station. | 9.8 |
2022-05-05 | CVE-2022-27588 | Command Injection vulnerability in Qnap QVR 5.1.5 We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later | 9.8 |