NA - CVE-2024-48859 - An improper authentication vulnerability has...
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to compromise the security...
NA - CVE-2024-48863 - A command injection vulnerability has been...
A command injection vulnerability has been reported to affect License Center. If exploited, the vulnerability could allow remote attackers to execute arbitrary commands. We have already fixed the...
NA - CVE-2024-48865 - An improper certificate validation...
An improper certificate validation vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow attackers with local network access...
NA - CVE-2024-48866 - An improper handling of URL encoding (Hex...
An improper handling of URL encoding (Hex Encoding) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to...
NA - CVE-2024-48867 - An improper neutralization of CRLF sequences...
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could...
NA - CVE-2024-48868 - An improper neutralization of CRLF sequences...
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could...
NA - CVE-2024-50387 - A SQL injection vulnerability has been reported...
A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to inject malicious code. We have...
NA - CVE-2024-50388 - An OS command injection vulnerability has been...
An OS command injection vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attackers to execute commands. We have already fixed...
NA - CVE-2024-50389 - A SQL injection vulnerability has been reported...
A SQL injection vulnerability has been reported to affect QuRouter. If exploited, the vulnerability could allow remote attackers to inject malicious code. We have already fixed the vulnerability...