Qnap Qvr
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Qnap Qvr.
By the Year
In 2024 there have been 0 vulnerabilities in Qnap Qvr . Last year Qvr had 2 security vulnerabilities published. Right now, Qvr is on track to have less security vulnerabilities in 2024 than it did last year.
Year | Vulnerabilities | Average Score |
---|---|---|
2024 | 0 | 0.00 |
2023 | 2 | 4.95 |
2022 | 1 | 9.80 |
2021 | 6 | 9.20 |
2020 | 0 | 0.00 |
2019 | 0 | 0.00 |
2018 | 0 | 0.00 |
It may take a day or so for new Qvr vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Qnap Qvr Security Vulnerabilities
A vulnerability has been reported to affect QNAP operating systems
CVE-2022-27597
2.7 - Low
- March 29, 2023
A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remote authenticated administrators to get secret values. The vulnerability affects the following QNAP operating systems: QTS, QuTS hero, QuTScloud, QVP (QVR Pro appliances) We have already fixed the vulnerability in the following versions: QTS 5.0.1.2346 build 20230322 and later QuTS hero h5.0.1.2348 build 20230324 and later
An OS command injection vulnerability has been reported to affect QNAP operating systems
CVE-2023-23355
7.2 - High
- March 29, 2023
An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote authenticated administrators to execute commands via unspecified vectors. QES is not affected. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2346 build 20230322 and later QTS 4.5.4.2374 build 20230416 and later QuTS hero h5.0.1.2348 build 20230324 and later QuTS hero h4.5.4.2374 build 20230417 and later QuTScloud c5.0.1.2374 and later
Command Injection
We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later
CVE-2022-27588
9.8 - Critical
- May 05, 2022
We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later
Command Injection
A command injection vulnerability has been reported to affect QNAP device, VioStor
CVE-2021-38685
9.8 - Critical
- November 26, 2021
A command injection vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR FW 5.1.6 build 20211109 and later
Shell injection
An improper authentication vulnerability has been reported to affect QNAP device, VioStor
CVE-2021-38686
8.8 - High
- November 26, 2021
An improper authentication vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows attackers to compromise the security of the system. We have already fixed this vulnerability in the following versions of QVR: QVR FW 5.1.6 build 20211109 and later
authentification
A command injection vulnerability has been reported to affect QNAP device running QVR
CVE-2021-34352
9.8 - Critical
- October 01, 2021
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210902 and later
Command Injection
A command injection vulnerability has been reported to affect QNAP device running QVR
CVE-2021-34351
9.8 - Critical
- September 27, 2021
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later
Command Injection
A command injection vulnerability has been reported to affect QNAP device running QVR
CVE-2021-34349
7.2 - High
- September 27, 2021
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later
Command Injection
A command injection vulnerability has been reported to affect QNAP device running QVR
CVE-2021-34348
9.8 - Critical
- September 27, 2021
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later
Command Injection