Home/Product/qnap qutscloud
Product

qnap qutscloud

62 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-27600
>= c5.0.1 and < c5.0.1.2374
An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploite
6.8MEDIUM
CVE-2024-32766
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
10.0CRITICAL
CVE-2024-27124
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
7.5HIGH
CVE-2024-21905
>= c5.0.0.1919 and < c5.1.5.2651
An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If exploited,
6.5MEDIUM
CVE-2023-51365
>= c5.0.0.1919 and < c5.1.5.2651
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
8.7HIGH
CVE-2023-51364
>= c5.0.0.1919 and < c5.1.5.2651
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
8.7HIGH
CVE-2024-21900
< c5.1.5.2651
An injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability cou
4.3MEDIUM
CVE-2024-21899
< c5.1.5.2651
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
9.8CRITICAL
CVE-2023-32969
>= c5.0.0.1919 and < c5.1.5.2651
A cross-site scripting (XSS) vulnerability has been reported to affect Network & Virtual Switch. If exploited, the vulnerability c
4.9MEDIUM
CVE-2023-50358
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.8MEDIUM
CVE-2023-47218
>= c5.0.0.1919 and < c5.1.5.2651
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.8MEDIUM
CVE-2023-50359
all versions
An unchecked return value vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vuln
3.4LOW
CVE-2023-47568
all versions
A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
8.8HIGH
CVE-2023-47567
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
4.7MEDIUM
CVE-2023-47566
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
6.7MEDIUM
CVE-2023-45037
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-45036
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-45035
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-45028
all versions
An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploite
5.5MEDIUM
CVE-2023-45027
all versions
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
5.5MEDIUM
CVE-2023-45026
all versions
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
5.5MEDIUM
CVE-2023-45025
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
9.0CRITICAL
CVE-2023-41292
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-41283
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.5MEDIUM
CVE-2023-41282
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.5MEDIUM
CVE-2023-41281
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
5.5MEDIUM
CVE-2023-41280
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5MEDIUM
CVE-2023-41279
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5MEDIUM
CVE-2023-41278
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5MEDIUM
CVE-2023-41277
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5MEDIUM
CVE-2023-41276
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5MEDIUM
CVE-2023-41275
all versions
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
5.5MEDIUM
CVE-2023-41274
all versions
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
5.5MEDIUM
CVE-2023-41273
all versions
A heap-based buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the v
5.5MEDIUM
CVE-2023-39303
all versions
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
5.3MEDIUM
CVE-2023-39302
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
6.6MEDIUM
CVE-2023-39297
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
8.8HIGH
CVE-2023-32967
all versions
An incorrect authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
5.0MEDIUM
CVE-2023-23367
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
4.7MEDIUM
CVE-2023-39301
< c5.1.0.2498
A server-side request forgery (SSRF) vulnerability has been reported to affect several QNAP operating system versions. If exploite
4.3MEDIUM
CVE-2023-23368
all versions
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
9.8CRITICAL
CVE-2023-32974
>= c5.0.0.1919 and < c5.1.0.2498
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability
7.5HIGH
CVE-2023-32973
>= c5.0.0.1919 and < c5.1.0.2498
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-32970
>= c5.0.0.1919 and < c5.1.0.2498
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul
4.9MEDIUM
CVE-2023-32972
>= c5.0.1 and < c5.1.0.2498
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-32971
>= c5.0.1 and < c5.1.0.2498
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If
3.8LOW
CVE-2023-23362
>= c5.0.1 and <= c5.0.1.2374
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability allows r
8.8HIGH
CVE-2022-27598
all versions
A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remo
2.7LOW
CVE-2022-27597
all versions
A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remo
2.7LOW
CVE-2023-23355
all versions
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly
6.6MEDIUM
CVE-2021-44054
< c5.0.1.1998
An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. If exploited, this vu
4.3MEDIUM
CVE-2021-44053
< c5.0.1.1998
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploi
5.7MEDIUM
CVE-2021-44052
< c5.0.1.1998
An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running Qu
6.5MEDIUM
CVE-2021-44051
< c5.0.1.1998
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vu
8.8HIGH
CVE-2021-38693
< c5.0.1.1949
A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. If ex
5.3MEDIUM
CVE-2021-38674
< c4.5.7.1864
A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerabil
4.2MEDIUM
CVE-2021-34343
< c4.5.6.1755
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, thi
6.0MEDIUM
CVE-2021-28816
< c4.5.6.1755
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, thi
7.6HIGH
CVE-2018-19957
< c4.5.6.1755
A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTS
6.1MEDIUM
CVE-2021-28806
< c4.5.5.1656
A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability all
5.7MEDIUM
CVE-2018-19942
< c4.5.3
A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station. If exploited, this vulner
6.1MEDIUM
CVE-2018-19941
< c4.5.2.1379
A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an attacker to access sensitive info
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin