Latest CVE Feed
-
6.1
MEDIUMCVE-2021-34361
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions ... Read more
- EPSS Score: %0.35
- Published: Feb. 25, 2022
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-34360
A cross-site request forgery (CSRF) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following ve... Read more
- EPSS Score: %0.09
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
6.9
MEDIUMCVE-2021-34359
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions ... Read more
- EPSS Score: %0.22
- Published: Feb. 25, 2022
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-34358
We have already fixed this vulnerability in the following versions of QmailAgent: QmailAgent 3.0.2 ( 2021/08/25 ) and later... Read more
- EPSS Score: %0.12
- Published: Nov. 20, 2021
- Modified: Nov. 21, 2024
-
6.9
MEDIUMCVE-2021-34357
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QmailAgent. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of... Read more
- EPSS Score: %0.35
- Published: Nov. 13, 2021
- Modified: Nov. 21, 2024
-
7.6
HIGHCVE-2021-34356
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions... Read more
- EPSS Score: %0.26
- Published: Oct. 01, 2021
- Modified: Nov. 21, 2024
-
7.6
HIGHCVE-2021-34355
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP NAS running Photo Station. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of... Read more
- EPSS Score: %0.17
- Published: Oct. 01, 2021
- Modified: Nov. 21, 2024
-
7.6
HIGHCVE-2021-34354
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions... Read more
- EPSS Score: %0.26
- Published: Oct. 01, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-34352
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR ... Read more
Affected Products : qvr- EPSS Score: %4.18
- Published: Oct. 01, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-34351
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR ... Read more
Affected Products : qvr- EPSS Score: %1.22
- Published: Sep. 27, 2021
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2021-34349
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR ... Read more
Affected Products : qvr- EPSS Score: %1.09
- Published: Sep. 27, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-34348
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR ... Read more
Affected Products : qvr- EPSS Score: %1.22
- Published: Sep. 27, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-34346
A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of... Read more
- EPSS Score: %1.21
- Published: Sep. 10, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-34345
A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of... Read more
- EPSS Score: %1.21
- Published: Sep. 10, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-34344
A stack buffer overflow vulnerability has been reported to affect QNAP device running QUSBCam2. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of QUSBCam2: QT... Read more
- EPSS Score: %0.81
- Published: Sep. 10, 2021
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2021-34343
A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following version... Read more
- EPSS Score: %0.67
- Published: Sep. 10, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-34342
Ming 0.4.8 has an out-of-bounds read vulnerability in the function newVar_N() in decompile.c which causes a huge information leak.... Read more
- EPSS Score: %0.26
- Published: Mar. 10, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-34341
Ming 0.4.8 has an out-of-bounds read vulnerability in the function decompileIF() in the decompile.c file that causes a direct segmentation fault and leads to denial of service.... Read more
- EPSS Score: %0.23
- Published: Mar. 10, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-34340
Ming 0.4.8 has an out-of-bounds buffer access issue in the function decompileINCR_DECR() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.... Read more
- EPSS Score: %0.23
- Published: Mar. 10, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-34339
Ming 0.4.8 has an out-of-bounds buffer access issue in the function getString() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.... Read more
- EPSS Score: %0.23
- Published: Mar. 10, 2022
- Modified: Nov. 21, 2024