Vulnerability index

Browse CVEs

539 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Video Station CRITICAL 9.8
CVE-2021-44056

An improper authentication vulnerability has been reported to affect QNAP device running Video Station. If exploited, this vulnerability allows attac…

Fix: 5.1.8 / 5.3.13+
Fix from $2,300 2022-05-05
Photo Station CRITICAL 9.8
CVE-2021-44057

An improper authentication vulnerability has been reported to affect QNAP device running Photo Station. If exploited, this vulnerability allows attac…

Fix: 5.4.13 / 5.7.16+
Fix from $2,300 2022-05-05
Qts HIGH 8.8
CVE-2021-44051

A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows …

Fix: 4.3.3.1945 / 4.3.4.1976+
Fix from $1,950 2022-05-05
Qts HIGH 8.1
CVE-2021-44052

An improper link resolution before file access ('Link Following') vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero,…

Fix: 4.3.3.1945 / 4.3.4.1976+
Fix from $1,950 2022-05-05
Qts MEDIUM 6.1
CVE-2021-44053

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud. If exploited, this vulnerabi…

Fix: 4.3.3.1945 / 4.3.4.1976+
Fix from $1,600 2022-05-05
Qts MEDIUM 6.1
CVE-2021-44054

An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. If exploited, this vulnerability allows …

Fix: 4.3.3.1945 / 4.3.4.1976+
Fix from $1,600 2022-05-05
Qts MEDIUM 5.3
CVE-2021-38693

A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Appliance. If exploited, this vulne…

Fix: 4.5.4.1991 / 5.0.0.1986+
Fix from $1,600 2022-05-05
Nas Proxy Server MEDIUM 6.1
CVE-2021-34361

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remo…

Fix: 1.4.2+
Fix from $1,600 2022-02-25
Nas Proxy Server MEDIUM 5.4
CVE-2021-34359

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remo…

Fix: 1.4.2+
Fix from $1,600 2022-02-25
Kazoo Server CRITICAL 9.8
CVE-2021-38679

An improper authentication vulnerability has been reported to affect QNAP NAS running Kazoo Server. If exploited, this vulnerability allows attackers…

Fix: 4.11.22+
Fix from $2,300 2022-02-11
Qvr Elite CRITICAL 9.8
CVE-2021-38682

A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If exploited, this vulnerability…

Fix: 2.1.3.0 / 2.1.4.0+
Fix from $2,300 2022-01-14
Qvr Elite CRITICAL 9.8
CVE-2021-38689

A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If exploited, this vulnerability…

Fix: 2.1.3.0 / 2.1.4.0+
Fix from $2,300 2022-01-14
Qvr Elite CRITICAL 9.8
CVE-2021-38690

A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If exploited, this vulnerability…

Fix: 2.1.3.0 / 2.1.4.0+
Fix from $2,300 2022-01-14
Qvr Elite CRITICAL 9.8
CVE-2021-38691

A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If exploited, this vulnerability…

Fix: 2.1.3.0 / 2.1.4.0+
Fix from $2,300 2022-01-14
Qvr Elite CRITICAL 9.8
CVE-2021-38692

A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If exploited, this vulnerability…

Fix: 2.1.3.0 / 2.1.4.0+
Fix from $2,300 2022-01-14
Qcalagent MEDIUM 6.1
CVE-2021-38677

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this vulnerability allows remote …

Fix: 1.1.7+
Fix from $1,600 2022-01-14
Qcalagent MEDIUM 6.1
CVE-2021-38678

An open redirect vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this vulnerability allows attackers to redire…

Fix: 1.1.7+
Fix from $1,600 2022-01-14
Qts MEDIUM 6.1
CVE-2021-38674

A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote a…

Fix: 4.5.4.1787+
Fix from $1,600 2022-01-07
Surveillance Station CRITICAL 9.8
CVE-2021-38687

A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Surveillance Station. If exploited, this vulnerability allows atta…

Fix: 5.1.5.3.6 / 5.1.5.4.6+
Fix from $2,300 2021-12-29
Qfile HIGH 7.5
CVE-2021-38688

An improper authentication vulnerability has been reported to affect Android App Qfile. If exploited, this vulnerability allows attackers to compromi…

Fix: 3.0.0.1105+
Fix from $1,950 2021-12-29
Kazoo Server MEDIUM 6.1
CVE-2021-38680

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Kazoo Server. If exploited, this vulnerability allows remo…

Fix: 4.11.20+
Fix from $1,600 2021-12-29
Qvr CRITICAL 9.8
CVE-2021-38685

A command injection vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows remote attackers to run a…

Fix: 5.1.6+
Fix from $2,300 2021-11-26
Qvr HIGH 8.8
CVE-2021-38686

An improper authentication vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows attackers to compr…

Fix: 5.1.6+
Fix from $1,950 2021-11-26
Qmailagent HIGH 8.8
CVE-2021-34358

We have already fixed this vulnerability in the following versions of QmailAgent: QmailAgent 3.0.2 ( 2021/08/25 ) and later

Fix: 3.0.2+
Fix from $1,950 2021-11-20
Ragic Cloud Db MEDIUM 5.4
CVE-2021-38681

A reflected cross-site scripting (XSS) vulnerability has been reported to affect QNAP NAS running Ragic Cloud DB. If exploited, this vulnerability al…

Fix: after 3.7.0.1
Fix from $1,600 2021-11-20
Multimedia Console CRITICAL 9.8
CVE-2021-38684

A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Multimedia Console. If exploited, this vulnerability allows attack…

Fix: 1.4.3+
Fix from $2,300 2021-11-13
Qmailagent MEDIUM 6.1
CVE-2021-34357

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QmailAgent. If exploited, this vulnerability allows remote…

Fix: 3.0.2+
Fix from $1,600 2021-11-13
Media Streaming Add On HIGH 7.2
CVE-2021-34362

A command injection vulnerability has been reported to affect QNAP device running Media Streaming add-on. If exploited, this vulnerability allow remo…

Fix: 430.1.8.12 / 500.0.0.3+
Fix from $1,950 2021-10-22
Qvr CRITICAL 9.8
CVE-2021-34352

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers …

Fix: 5.1.5+
Fix from $2,300 2021-10-01
Photo Station MEDIUM 5.4
CVE-2021-34354

A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station. If exploited, this vulnerability allows rem…

Fix: 6.0.18+
Fix from $1,600 2021-10-01