Vulnerabilities > Qnap > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-01-14 CVE-2021-38678 Open Redirect vulnerability in Qnap Qcalagent
An open redirect vulnerability has been reported to affect QNAP device running QcalAgent.
network
low complexity
qnap CWE-601
6.1
2022-01-07 CVE-2021-38674 Cross-site Scripting vulnerability in Qnap QTS and Quts Hero
A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud.
network
low complexity
qnap CWE-79
6.1
2021-12-29 CVE-2021-38680 Unspecified vulnerability in Qnap Kazoo Server 4.10.12/4.10.9
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Kazoo Server.
network
low complexity
qnap
6.1
2021-11-20 CVE-2021-38681 Unspecified vulnerability in Qnap Ragic Cloud DB
A reflected cross-site scripting (XSS) vulnerability has been reported to affect QNAP NAS running Ragic Cloud DB.
network
low complexity
qnap
5.4
2021-11-13 CVE-2021-34357 Unspecified vulnerability in Qnap Qmailagent
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QmailAgent.
network
low complexity
qnap
6.1
2021-10-01 CVE-2021-34354 Unspecified vulnerability in Qnap Photo Station
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station.
network
low complexity
qnap
5.4
2021-10-01 CVE-2021-34355 Unspecified vulnerability in Qnap Photo Station
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP NAS running Photo Station.
network
low complexity
qnap
5.4
2021-10-01 CVE-2021-34356 Unspecified vulnerability in Qnap Photo Station
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station.
network
low complexity
qnap
5.4
2021-10-01 CVE-2021-38675 Unspecified vulnerability in Qnap Image2Pdf
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Image2PDF.
network
low complexity
qnap
5.4
2021-09-10 CVE-2018-19957 Improper Restriction of Rendered UI Layers or Frames vulnerability in Qnap Qts, Quts Hero and Qutscloud
A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTScloud.
network
low complexity
qnap CWE-1021
6.1