NA - CVE-2024-48864 - A files or directories accessible to external...
A files or directories accessible to external parties vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers to read/write files or...
NA - CVE-2024-50390 - A command injection vulnerability has been...
A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote attackers to execute arbitrary commands. We have already fixed the...
NA - CVE-2024-50394 - An improper certificate validation...
An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers to compromise the security of the system. We...
NA - CVE-2024-50405 - An improper neutralization of CRLF sequences...
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could...
NA - CVE-2024-53692 - A command injection vulnerability has been...
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator...
NA - CVE-2024-53693 - An improper neutralization of CRLF sequences...
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could...
NA - CVE-2024-53694 - A time-of-check time-of-use (TOCTOU) race...
A time-of-check time-of-use (TOCTOU) race condition vulnerability has been reported to affect several product versions. If exploited, the vulnerability could allow local attackers who have gained...
NA - CVE-2024-53695 - A buffer overflow vulnerability has been...
A buffer overflow vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attackers to modify memory or crash processes. We have...
NA - CVE-2024-53696 - A server-side request forgery (SSRF)...
A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers who have gained administrator access to...
NA - CVE-2024-53697 - An out-of-bounds write vulnerability has been...
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator...