Qvr Qnap Qvr

Do you want an email whenever new security vulnerabilities are reported in Qnap Qvr?

By the Year

In 2024 there have been 0 vulnerabilities in Qnap Qvr . Last year Qvr had 2 security vulnerabilities published. Right now, Qvr is on track to have less security vulnerabilities in 2024 than it did last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 2 4.95
2022 1 9.80
2021 6 9.20
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Qvr vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Qnap Qvr Security Vulnerabilities

A vulnerability has been reported to affect QNAP operating systems

CVE-2022-27597 2.7 - Low - March 29, 2023

A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remote authenticated administrators to get secret values. The vulnerability affects the following QNAP operating systems: QTS, QuTS hero, QuTScloud, QVP (QVR Pro appliances) We have already fixed the vulnerability in the following versions: QTS 5.0.1.2346 build 20230322 and later QuTS hero h5.0.1.2348 build 20230324 and later

An OS command injection vulnerability has been reported to affect QNAP operating systems

CVE-2023-23355 7.2 - High - March 29, 2023

An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote authenticated administrators to execute commands via unspecified vectors. QES is not affected. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2346 build 20230322 and later QTS 4.5.4.2374 build 20230416 and later QuTS hero h5.0.1.2348 build 20230324 and later QuTS hero h4.5.4.2374 build 20230417 and later QuTScloud c5.0.1.2374 and later

Command Injection

We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later

CVE-2022-27588 9.8 - Critical - May 05, 2022

We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later

Command Injection

A command injection vulnerability has been reported to affect QNAP device, VioStor

CVE-2021-38685 9.8 - Critical - November 26, 2021

A command injection vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR FW 5.1.6 build 20211109 and later

Shell injection

An improper authentication vulnerability has been reported to affect QNAP device, VioStor

CVE-2021-38686 8.8 - High - November 26, 2021

An improper authentication vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows attackers to compromise the security of the system. We have already fixed this vulnerability in the following versions of QVR: QVR FW 5.1.6 build 20211109 and later

authentification

A command injection vulnerability has been reported to affect QNAP device running QVR

CVE-2021-34352 9.8 - Critical - October 01, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210902 and later

Command Injection

A command injection vulnerability has been reported to affect QNAP device running QVR

CVE-2021-34351 9.8 - Critical - September 27, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later

Command Injection

A command injection vulnerability has been reported to affect QNAP device running QVR

CVE-2021-34349 7.2 - High - September 27, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later

Command Injection

A command injection vulnerability has been reported to affect QNAP device running QVR

CVE-2021-34348 9.8 - Critical - September 27, 2021

A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later

Command Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Qnap Qvr or by Qnap? Click the Watch button to subscribe.

Qnap
Vendor

Qnap Qvr
Product

subscribe