Vulnerabilities > Qnap

DATE CVE VULNERABILITY TITLE RISK
2021-06-03 CVE-2021-28807 Cross-site Scripting vulnerability in Qnap Q'Center
A post-authentication reflected XSS vulnerability has been reported to affect QNAP NAS running Q’center.
network
low complexity
qnap CWE-79
5.4
2021-06-03 CVE-2021-28812 Command Injection vulnerability in Qnap Video Station
A command injection vulnerability has been reported to affect certain versions of Video Station.
network
low complexity
qnap CWE-77
8.8
2021-05-21 CVE-2021-28798 Path Traversal vulnerability in Qnap QTS and Quts Hero
A relative path traversal vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero.
network
low complexity
qnap CWE-22
7.5
2021-05-13 CVE-2020-36197 Improper Access Control vulnerability in Qnap Music Station
An improper access control vulnerability has been reported to affect earlier versions of Music Station.
low complexity
qnap CWE-284
8.8
2021-05-13 CVE-2020-36198 OS Command Injection vulnerability in Qnap Malware Remover
A command injection vulnerability has been reported to affect certain versions of Malware Remover.
local
low complexity
qnap CWE-78
6.7
2021-05-13 CVE-2021-28799 Unspecified vulnerability in Qnap Hybrid Backup Sync
An improper authorization vulnerability has been reported to affect QNAP NAS running HBS 3 (Hybrid Backup Sync.
network
low complexity
qnap
critical
9.8
2021-04-17 CVE-2020-36195 SQL Injection vulnerability in Qnap QTS
An SQL injection vulnerability has been reported to affect QNAP NAS running Multimedia Console or the Media Streaming add-on.
network
low complexity
qnap CWE-89
critical
9.8
2021-04-17 CVE-2020-2509 Command Injection vulnerability in Qnap QTS
A command injection vulnerability has been reported to affect QTS and QuTS hero.
network
low complexity
qnap CWE-77
critical
9.8
2021-04-16 CVE-2018-19942 Cross-site Scripting vulnerability in Qnap QTS
A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station.
network
low complexity
qnap CWE-79
6.1
2021-04-14 CVE-2021-28797 Out-of-bounds Write vulnerability in Qnap Surveillance Station
A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station.
network
low complexity
qnap CWE-787
critical
9.8