Vulnerability index

Browse CVEs

12 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Qvr Firmware HIGH 8.8
CVE-2023-47565 KEVEPSS 73%

An OS command injection vulnerability has been found to affect legacy QNAP VioStor NVR models running QVR Firmware 4.x. If exploited, the vulnerabili…

Fix: 5.0.0+
Fix from $1,950 2023-12-08
Photo Station CRITICAL 9.1
CVE-2022-27593 KEVEPSS 88%

An externally controlled reference to a resource vulnerability has been reported to affect QNAP NAS running Photo Station. If exploited, This could a…

Fix: 5.2.14 / 5.4.15+
Fix from $2,300 2022-09-08
Hybrid Backup Sync CRITICAL 9.8
CVE-2021-28799 KEVEPSS 78%

An improper authorization vulnerability has been reported to affect QNAP NAS running HBS 3 (Hybrid Backup Sync. ) If exploited, the vulnerability all…

Fix: 3.0.210411 / 3.0.210412+
Fix from $2,300 2021-05-13
Qts CRITICAL 9.8
CVE-2020-2509 KEVEPSS 33%

A command injection vulnerability has been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitra…

Fix: 4.2.6 / 4.3.6+
Fix from $2,300 2021-04-17
Helpdesk CRITICAL 9.8
CVE-2020-2506 KEV

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this improper access control vulnerability could allow attacker…

Fix: 3.0.3+
Fix from $2,300 2021-02-03
Qts CRITICAL 9.8
CVE-2018-19949 KEVEPSS 24%

If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. QNAP has already fixed the issue in the fo…

Fix: 4.2.6 / 4.3.3.1161+
Fix from $2,300 2020-10-28
Qts MEDIUM 6.1
CVE-2018-19953 KEVEPSS 24%

If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has already fixed the issue in the …

Fix: 4.2.6 / 4.3.3.1161+
Fix from $1,600 2020-10-28
Qts MEDIUM 5.4
CVE-2018-19943 KEVEPSS 18%

If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has already fixed these issues in t…

Fix: 4.2.6 / 4.3.3.1252+
Fix from $1,600 2020-10-28
Qts CRITICAL 9.8
CVE-2019-7193 KEVEPSS 14%

This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the vulnerability, QNAP recommend…

Mitigation only
Fix from $2,300 2019-12-05
Photo Station CRITICAL 9.8
CVE-2019-7194 KEVEPSS 83%

This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fix the vulnerability, QNAP rec…

Fix: 5.2.11 / 5.4.9+
Fix from $2,300 2019-12-05
Photo Station CRITICAL 9.8
CVE-2019-7195 KEVEPSS 90%

This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fix the vulnerability, QNAP rec…

Fix: 5.2.11 / 5.4.9+
Fix from $2,300 2019-12-05
Photo Station CRITICAL 9.8
CVE-2019-7192 KEVEPSS 88%

This improper access control vulnerability allows remote attackers to gain unauthorized access to the system. To fix these vulnerabilities, QNAP reco…

Fix: 5.2.11 / 5.4.9+
Fix from $2,300 2019-12-05