Vulnerabilities > Qnap > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-11-26 CVE-2021-38685 Unspecified vulnerability in Qnap QVR 5.1.5
A command injection vulnerability has been reported to affect QNAP device, VioStor.
network
low complexity
qnap
critical
9.8
2021-11-13 CVE-2021-38684 Out-of-bounds Write vulnerability in Qnap Multimedia Console
A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Multimedia Console.
network
low complexity
qnap CWE-787
critical
9.8
2021-10-01 CVE-2021-34352 Command Injection vulnerability in Qnap QVR
A command injection vulnerability has been reported to affect QNAP device running QVR.
network
low complexity
qnap CWE-77
critical
9.8
2021-09-27 CVE-2021-34348 Command Injection vulnerability in Qnap QVR
A command injection vulnerability has been reported to affect QNAP device running QVR.
network
low complexity
qnap CWE-77
critical
9.8
2021-09-27 CVE-2021-34351 Command Injection vulnerability in Qnap QVR
A command injection vulnerability has been reported to affect QNAP device running QVR.
network
low complexity
qnap CWE-77
critical
9.8
2021-09-10 CVE-2021-34344 Out-of-bounds Write vulnerability in Qnap Qusbcam2
A stack buffer overflow vulnerability has been reported to affect QNAP device running QUSBCam2.
network
low complexity
qnap CWE-787
critical
9.8
2021-09-10 CVE-2021-34345 Out-of-bounds Write vulnerability in Qnap products
A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion.
network
low complexity
qnap CWE-787
critical
9.8
2021-09-10 CVE-2021-34346 Out-of-bounds Write vulnerability in Qnap NVR Storage Expansion Firmware
A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion.
network
low complexity
qnap CWE-787
critical
9.8
2021-08-09 CVE-2013-6276 Use of Hard-coded Credentials vulnerability in Qnap products
QNAP F_VioCard 2312 and F_VioGate 2308 have hardcoded entries in authorized_keys files.
network
low complexity
qnap CWE-798
critical
9.8
2021-07-08 CVE-2021-28809 Unspecified vulnerability in Qnap Hybrid Backup Sync 3.0.210411/3.0.210412/3.0.210506
An improper access control vulnerability has been reported to affect certain legacy versions of HBS 3.
network
low complexity
qnap
critical
9.8