threat
engine
.sh
Back
·
··:··
Home
/
Product
/
qnap qutscloud
Product
qnap qutscloud
62 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2022-27600
>= c5.0.1 and < c5.0.1.2374
An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploite
6.8
MEDIUM
CVE-2024-32766
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
10.0
CRITICAL
CVE-2024-27124
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
7.5
HIGH
CVE-2024-21905
>= c5.0.0.1919 and < c5.1.5.2651
An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If exploited,
6.5
MEDIUM
CVE-2023-51365
>= c5.0.0.1919 and < c5.1.5.2651
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
8.7
HIGH
CVE-2023-51364
>= c5.0.0.1919 and < c5.1.5.2651
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
8.7
HIGH
CVE-2024-21900
< c5.1.5.2651
An injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability cou
4.3
MEDIUM
CVE-2024-21899
< c5.1.5.2651
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
9.8
CRITICAL
CVE-2023-32969
>= c5.0.0.1919 and < c5.1.5.2651
A cross-site scripting (XSS) vulnerability has been reported to affect Network & Virtual Switch. If exploited, the vulnerability c
4.9
MEDIUM
CVE-2023-50358
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.8
MEDIUM
CVE-2023-47218
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.8
MEDIUM
CVE-2023-50359
all versions
An unchecked return value vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vuln
3.4
LOW
CVE-2023-47568
all versions
A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
8.8
HIGH
CVE-2023-47567
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
4.7
MEDIUM
CVE-2023-47566
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
6.7
MEDIUM
CVE-2023-45037
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-45036
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-45035
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-45028
all versions
An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploite
5.5
MEDIUM
CVE-2023-45027
all versions
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
5.5
MEDIUM
CVE-2023-45026
all versions
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
5.5
MEDIUM
CVE-2023-45025
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
9.0
CRITICAL
CVE-2023-41292
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-41283
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.5
MEDIUM
CVE-2023-41282
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.5
MEDIUM
CVE-2023-41281
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.5
MEDIUM
CVE-2023-41280
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5
MEDIUM
CVE-2023-41279
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5
MEDIUM
CVE-2023-41278
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5
MEDIUM
CVE-2023-41277
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5
MEDIUM
CVE-2023-41276
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5
MEDIUM
CVE-2023-41275
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5
MEDIUM
CVE-2023-41274
all versions
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
5.5
MEDIUM
CVE-2023-41273
all versions
A heap-based buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the v
5.5
MEDIUM
CVE-2023-39303
all versions
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
5.3
MEDIUM
CVE-2023-39302
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
6.6
MEDIUM
CVE-2023-39297
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
8.8
HIGH
CVE-2023-32967
all versions
An incorrect authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
5.0
MEDIUM
CVE-2023-23367
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
4.7
MEDIUM
CVE-2023-39301
< c5.1.0.2498
A server-side request forgery (SSRF) vulnerability has been reported to affect several QNAP operating system versions. If exploite
4.3
MEDIUM
CVE-2023-23368
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
9.8
CRITICAL
CVE-2023-32974
>= c5.0.0.1919 and < c5.1.0.2498
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
7.5
HIGH
CVE-2023-32973
>= c5.0.0.1919 and < c5.1.0.2498
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-32970
>= c5.0.0.1919 and < c5.1.0.2498
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
4.9
MEDIUM
CVE-2023-32972
>= c5.0.1 and < c5.1.0.2498
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-32971
>= c5.0.1 and < c5.1.0.2498
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8
LOW
CVE-2023-23362
>= c5.0.1 and <= c5.0.1.2374
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability allows r
8.8
HIGH
CVE-2022-27598
all versions
A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remo
2.7
LOW
CVE-2022-27597
all versions
A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remo
2.7
LOW
CVE-2023-23355
all versions
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly
6.6
MEDIUM
CVE-2021-44054
< c5.0.1.1998
An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. If exploited, this vu
4.3
MEDIUM
CVE-2021-44053
< c5.0.1.1998
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploi
5.7
MEDIUM
CVE-2021-44052
< c5.0.1.1998
An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running Qu
6.5
MEDIUM
CVE-2021-44051
< c5.0.1.1998
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vu
8.8
HIGH
CVE-2021-38693
< c5.0.1.1949
A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. If ex
5.3
MEDIUM
CVE-2021-38674
< c4.5.7.1864
A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerabil
4.2
MEDIUM
CVE-2021-34343
< c4.5.6.1755
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, thi
6.0
MEDIUM
CVE-2021-28816
< c4.5.6.1755
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, thi
7.6
HIGH
CVE-2018-19957
< c4.5.6.1755
A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTS
6.1
MEDIUM
CVE-2021-28806
< c4.5.5.1656
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability all
5.7
MEDIUM
CVE-2018-19942
< c4.5.3
A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station. If exploited, this vulner
6.1
MEDIUM
CVE-2018-19941
< c4.5.2.1379
A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an attacker to access sensitive info
7.5
HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin