Vulnerabilities > Qnap > QTS > 4.5.2

DATE CVE VULNERABILITY TITLE RISK
2021-07-01 CVE-2020-36194 Cross-site Scripting vulnerability in Qnap QTS and Quts Hero
An XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero.
network
low complexity
qnap CWE-79
6.1
2021-06-03 CVE-2021-28806 Unspecified vulnerability in Qnap QTS
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero.
network
low complexity
qnap
5.4
2021-05-21 CVE-2021-28798 Path Traversal vulnerability in Qnap QTS and Quts Hero
A relative path traversal vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero.
network
low complexity
qnap CWE-22
7.5
2021-04-17 CVE-2020-2509 Command Injection vulnerability in Qnap QTS
A command injection vulnerability has been reported to affect QTS and QuTS hero.
network
low complexity
qnap CWE-77
critical
9.8
2021-04-16 CVE-2018-19942 Cross-site Scripting vulnerability in Qnap QTS
A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station.
network
low complexity
qnap CWE-79
6.1