CVE-2021-34352
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210902 and later.
HIGH · CVSS 7.2
EPSS 0.04181
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0