Vulnerabilities > Qnap > Q Center > 1.1.15

DATE CVE VULNERABILITY TITLE RISK
2021-07-01 CVE-2021-28803 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Qnap Q'Center
This issue affects: QNAP Systems Inc.
network
qnap CWE-80
3.5
2021-06-03 CVE-2021-28807 Cross-site Scripting vulnerability in Qnap Q'Center
A post-authentication reflected XSS vulnerability has been reported to affect QNAP NAS running Q’center.
network
qnap CWE-79
3.5
2018-07-17 CVE-2018-0710 OS Command Injection vulnerability in Qnap Q'Center
Command injection vulnerability in SSH of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to run arbitrary commands.
network
low complexity
qnap CWE-78
critical
9.0
2018-07-17 CVE-2018-0709 OS Command Injection vulnerability in Qnap Q'Center
Command injection vulnerability in date of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to run arbitrary commands.
network
low complexity
qnap CWE-78
critical
9.0
2018-07-17 CVE-2018-0708 OS Command Injection vulnerability in Qnap Q'Center
Command injection vulnerability in networking of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to run arbitrary commands.
network
low complexity
qnap CWE-78
critical
9.0
2018-07-17 CVE-2018-0707 OS Command Injection vulnerability in Qnap Q'Center
Command injection vulnerability in change password of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to run arbitrary commands.
network
low complexity
qnap CWE-78
critical
9.0
2018-07-17 CVE-2018-0706 Unspecified vulnerability in Qnap Q'Center
Exposure of Private Information in QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to access sensitive information.
network
low complexity
qnap
4.0