Vulnerability index

Browse CVEs

539 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2020-36197EPSS 18% An improper access control vulnerability has been reported to affect earlier versions of Music Station. If exploited, this vulnerability allows attac… Music Station 5.1.14 / 5.2.10+ Fix from $1,9502021-05-13 MEDIUM 6.7 CVE-2020-36198 A command injection vulnerability has been reported to affect certain versions of Malware Remover. If exploited, this vulnerability allows remote att… Malware Remover 4.6.1.0+ Fix from $1,6002021-05-13 CRITICAL 9.8 CVE-2020-2509 KEVEPSS 33% A command injection vulnerability has been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitra… Qts 4.2.6 / 4.3.6+ Fix from $2,3002021-04-17 CRITICAL 9.8 CVE-2020-36195 An SQL injection vulnerability has been reported to affect QNAP NAS running Multimedia Console or the Media Streaming add-on. If exploited, the vulne… Qts 1.3.4 / 4.3.3+ Fix from $2,3002021-04-17 MEDIUM 6.1 CVE-2018-19942 A cross-site scripting (XSS) vulnerability has been reported to affect earlier versions of File Station. If exploited, this vulnerability allows remo… Qts 4.2.6 / 4.3.6+ Fix from $1,6002021-04-16 CRITICAL 9.8 CVE-2021-28797EPSS 6% A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station. If exploited, this vulnerabili… Surveillance Station 5.1.5.3.3 / 5.1.5.4.3+ Fix from $2,3002021-04-14 CRITICAL 9.8 CVE-2020-2501 A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station. If exploited, this vulnerabili… Surveillance Station 5.1.5.3.3 / 5.1.5.4.3+ Fix from $2,3002021-02-17 MEDIUM 6.1 CVE-2020-2502 This cross-site scripting vulnerability in Photo Station allows remote attackers to inject malicious code. QANP We have already fixed this vulnerabil… Photo Station 6.0.11+ Fix from $1,6002021-02-17 CRITICAL 9.8 CVE-2020-2506 KEV The vulnerability have been reported to affect earlier versions of QTS. If exploited, this improper access control vulnerability could allow attacker… Helpdesk 3.0.3+ Fix from $2,3002021-02-03 CRITICAL 9.8 CVE-2020-2507 The vulnerability have been reported to affect earlier versions of QTS. If exploited, this command injection vulnerability could allow remote attacke… Helpdesk 3.0.3+ Fix from $2,3002021-02-03 HIGH 7.2 CVE-2020-2508 A command injection vulnerability has been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitra… Qts 4.5.1.1456+ Fix from $1,9502021-01-11 CRITICAL 9.1 CVE-2018-19945 A vulnerability has been reported to affect earlier QNAP devices running QTS 4.3.4 to 4.3.6. Caused by improper limitations of a pathname to a restri… Qts 4.3.4.0899 / 4.3.6.0895+ Fix from $2,3002020-12-31 HIGH 7.5 CVE-2018-19941 A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an attacker to access sensitive information stored in c… Qts 4.5.1.1456+ Fix from $1,9502020-12-31 HIGH 7.5 CVE-2018-19944 A cleartext transmission of sensitive information vulnerability has been reported to affect certain QTS devices. If exploited, this vulnerability all… Qts 4.4.3.1354+ Fix from $1,9502020-12-31 HIGH 8.8 CVE-2020-25847 This command injection vulnerability allows attackers to execute arbitrary commands in a compromised application. QNAP have already fixed this vulner… Qts 4.5.1.1495+ Fix from $1,9502020-12-29 HIGH 7.5 CVE-2020-2504 If exploited, this absolute path traversal vulnerability could allow attackers to traverse files in File Station. QNAP has already fixed these issues… Qes 2.1.1+ Fix from $1,9502020-12-24 HIGH 7.2 CVE-2020-2499 A hard-coded password vulnerability has been reported to affect earlier versions of QES. If exploited, this vulnerability could allow attackers to lo… Qes 2.1.1+ Fix from $1,9502020-12-24 MEDIUM 5.4 CVE-2020-2503 If exploited, this stored cross-site scripting vulnerability could allow remote attackers to inject malicious code in File Station. QNAP has already … Qes 2.1.1+ Fix from $1,6002020-12-24 MEDIUM 6.1 CVE-2020-2498 If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code in certificate configuration. QANP have a… Quts Hero 4.2.6 / 4.3.3.1315+ Fix from $1,6002020-12-10 CRITICAL 9.8 CVE-2019-7198 This command injection vulnerability allows attackers to execute arbitrary commands in a compromised application. QNAP have already fixed this vulner… Quts Hero 4.4.3.1354 / 4.5.1.1456+ Fix from $2,3002020-12-10 MEDIUM 6.1 CVE-2020-2491 This cross-site scripting vulnerability in Photo Station allows remote attackers to inject malicious code. QANP We have already fixed this vulnerabil… Photo Station 5.2.11 / 5.4.10+ Fix from $1,6002020-12-10 MEDIUM 6.1 CVE-2020-2493 This cross-site scripting vulnerability in Multimedia Console allows remote attackers to inject malicious code. QANP have already fixed this vulnerab… Multimedia Console 1.1.5+ Fix from $1,6002020-12-10 MEDIUM 6.1 CVE-2020-2494 This cross-site scripting vulnerability in Music Station allows remote attackers to inject malicious code. QANP have already fixed this vulnerability… Music Station 5.3.12 / 5.3.13+ Fix from $1,6002020-12-10 MEDIUM 6.1 CVE-2020-2495 If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code in File Station. QANP have already fixed … Quts Hero 4.2.6 / 4.3.3.1315+ Fix from $1,6002020-12-10 MEDIUM 6.1 CVE-2020-2496 If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code in File Station. QANP have already fixed … Quts Hero 4.2.6 / 4.3.3.1315+ Fix from $1,6002020-12-10 MEDIUM 6.1 CVE-2020-2497 If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code in System Connection Logs. QANP have alre… Quts Hero 4.2.6 / 4.3.3.1315+ Fix from $1,6002020-12-10 HIGH 7.2 CVE-2020-2492 If exploited, the command injection vulnerability could allow remote attackers to execute arbitrary commands. This issue affects: QNAP Systems Inc. Q… Qts 4.4.3.1421+ Fix from $1,9502020-11-16 HIGH 7.2 CVE-2020-2490 If exploited, the command injection vulnerability could allow remote attackers to execute arbitrary commands. This issue affects: QNAP Systems Inc. Q… Qts 4.4.3.1421+ Fix from $1,9502020-11-16 CRITICAL 9.8 CVE-2018-19950 If exploited, this command injection vulnerability could allow remote attackers to execute arbitrary commands. This issue affects: QNAP Systems Inc. … Music Station 5.1.13 / 5.2.9+ Fix from $2,3002020-11-02 HIGH 7.5 CVE-2018-19952 If exploited, this SQL injection vulnerability could allow remote attackers to obtain application information. This issue affects: QNAP Systems Inc. … Music Station 5.1.13 / 5.2.9+ Fix from $1,9502020-11-02