Vulnerability index

Browse CVEs

539 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Qsync Central HIGH 8.1
CVE-2025-22482

A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow rem…

Fix: 4.5.0.6+
Fix from $1,950 2025-06-06
File Station HIGH 7.5
CVE-2025-22490

A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploi…

Fix: 5.5.6.4847+
Fix from $1,950 2025-06-06
File Station HIGH 7.5
CVE-2025-29872

An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a remote attacker gains a user …

Fix: 5.5.6.4847+
Fix from $1,950 2025-06-06
File Station HIGH 7.5
CVE-2025-29873

A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploi…

Fix: 5.5.6.4847+
Fix from $1,950 2025-06-06
File Station MEDIUM 5.5
CVE-2025-29871

An out-of-bounds read vulnerability has been reported to affect File Station 5. If a local attacker gains an administrator account, they can then ex…

Fix: 5.5.6.4847+
Fix from $1,600 2025-06-06
Qts HIGH 8.8
CVE-2025-22481

A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow rem…

Mitigation only
Fix from $1,950 2025-06-06
Qurouter HIGH 7.8
CVE-2024-13088

An improper authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they can then exploit the vuln…

Mitigation only
Fix from $1,950 2025-06-06
License Center MEDIUM 5.4
CVE-2024-50406

A cross-site scripting (XSS) vulnerability has been reported to affect License Center. If exploited, the vulnerability could allow remote attackers w…

Fix: 1.9.49+
Fix from $1,600 2025-06-06
Qts MEDIUM 5.4
CVE-2024-56805

A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remot…

Mitigation only
Fix from $1,600 2025-06-06
Qurouter MEDIUM 6.7
CVE-2024-13087

A command injection vulnerability has been reported to affect QHora. If an attacker gains local network access who have also gained an administrator …

Mitigation only
Fix from $1,600 2025-06-06
Hybrid Backup Sync CRITICAL 9.1
CVE-2024-53695

A buffer overflow vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attackers to…

Fix: 25.1.4.952+
Fix from $2,300 2025-03-07
Quts Hero HIGH 7.2
CVE-2024-53697

An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow …

Mitigation only
Fix from $1,950 2025-03-07
Qts HIGH 7.2
CVE-2024-53699

An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow …

Mitigation only
Fix from $1,950 2025-03-07
Qurouter HIGH 7.2
CVE-2024-53700

A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote attackers who have gained adm…

Mitigation only
Fix from $1,950 2025-03-07
Qurouter CRITICAL 9.8
CVE-2024-50390

A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote attackers to execute arbitrar…

Mitigation only
Fix from $2,300 2025-03-07
Helpdesk HIGH 8.8
CVE-2024-50394

An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers t…

Fix: 3.3.3+
Fix from $1,950 2025-03-07
Qts HIGH 7.1
CVE-2024-53693

An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If …

Mitigation only
Fix from $1,950 2025-03-07
Qts MEDIUM 5.5
CVE-2024-50405

An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If …

Mitigation only
Fix from $1,600 2025-03-07
File Station CRITICAL 9.1
CVE-2024-48864

A files or directories accessible to external parties vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could…

Fix: 5.5.6.4741+
Fix from $2,300 2025-03-07
Qts HIGH 7.5
CVE-2024-13086

An exposure of sensitive information vulnerability has been reported to affect product. If exploited, the vulnerability could allow remote attackers …

Fix: 5.2.0.2851+
Fix from $1,950 2025-03-07
Qts HIGH 7.2
CVE-2024-38638

An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow …

Mitigation only
Fix from $1,950 2025-03-07
Qulog Center HIGH 8.7
CVE-2023-23354

A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could …

Fix: 1.3.1.645 / 1.4.1.691+
Fix from $1,950 2024-12-19
Qvpn HIGH 7.8
CVE-2022-27595

An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers…

Fix: 2.0.0.1316+
Fix from $1,950 2024-12-19
Qts HIGH 7.5
CVE-2022-27600

An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerabilit…

Fix: 4.5.4.2280 / 5.0.1.2277+
Fix from $1,950 2024-12-19
Qufirewall HIGH 7.2
CVE-2023-23356

A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow rem…

Fix: 2.3.3+
Fix from $1,950 2024-12-19
Qsync Central HIGH 8.8
CVE-2024-50404

A link following vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gaine…

Fix: 4.4.0.16+
Fix from $1,950 2024-12-06
Qts HIGH 8.8
CVE-2024-53691EPSS 20%

A link following vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote…

Mitigation only
Fix from $1,950 2024-12-06
Smb Service CRITICAL 9.8
CVE-2024-50387EPSS 10%

A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote …

Mitigation only
Fix from $2,300 2024-12-06
Hybrid Backup Sync CRITICAL 9.8
CVE-2024-50388

An OS command injection vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attack…

Mitigation only
Fix from $2,300 2024-12-06
Qurouter CRITICAL 9.8
CVE-2024-50389

A SQL injection vulnerability has been reported to affect QuRouter. If exploited, the vulnerability could allow remote attackers to inject malicious …

Mitigation only
Fix from $2,300 2024-12-06