NA - CVE-2024-48868 - An improper neutralization of CRLF sequences...
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could...
NA - CVE-2024-50387 - A SQL injection vulnerability has been reported...
A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to inject malicious code. We have...
NA - CVE-2024-50388 - An OS command injection vulnerability has been...
An OS command injection vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attackers to execute commands. We have already fixed...
NA - CVE-2024-50389 - A SQL injection vulnerability has been reported...
A SQL injection vulnerability has been reported to affect QuRouter. If exploited, the vulnerability could allow remote attackers to inject malicious code. We have already fixed the vulnerability...
NA - CVE-2024-50393 - A command injection vulnerability has been...
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to execute arbitrary commands. We...
NA - CVE-2024-50402 - A use of externally-controlled format string...
A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have...
NA - CVE-2024-50403 - A use of externally-controlled format string...
A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have...
NA - CVE-2024-50404 - A link following vulnerability has been...
A link following vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gained user access to traverse the file system to...
NA - CVE-2024-53691 - A link following vulnerability has been...
A link following vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to...
NA - CVE-2024-54143 - openwrt/asu is an image on demand server for...
openwrt/asu is an image on demand server for OpenWrt based distributions. The request hashing mechanism truncates SHA-256 hashes to only 12 characters. This significantly reduces entropy, making it...