QNAP NAS是中国QNAP公司的一个可访问且快速的存储解决方案。 QNAP Systems TS-870中存在安全漏洞。该漏洞源于一个涉及 HTTP 安全标头不足的漏洞会影响运行 QTS、QuTS hero 和 QuTScloud 的 QNAP NAS。该漏洞允许远程攻击者发起隐私和安全攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| QNAP Systems Inc. | QTS | unspecified ~ 4.5.4.1715 build 20210630 | - |
|
| QNAP Systems Inc. | QuTS hero | unspecified ~ h4.5.4.1771 build 20210825 | - |
|
| QNAP Systems Inc. | QuTScloud | unspecified ~ c4.5.6.1755 build 20210809 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-34344 | 9.8 CRITICAL | Stack Buffer Overflow Vulnerability in QUSBCam2 |
| CVE-2021-34345 | 9.8 CRITICAL | Stack Based Overflow Vulnerability in NVR Storage Expansion |
| CVE-2021-34346 | 9.8 CRITICAL | Stack Based Overflow Vulnerability in NVR Storage Expansion |
| CVE-2021-28813 | 9.6 CRITICAL | Insufficiently Protected Credentials Vulnerability in QSW-M2116P-2T2S and QuNetSwitch |
| CVE-2021-28816 | 7.6 HIGH | Stack Buffer Overflow Vulnerabilities in QTS, QuTS hero, and QuTScloud |
| CVE-2021-34343 | 6.0 MEDIUM | Buffer Overflow Vulnerability in QTS, QuTS hero, and QuTScloud |
No comments yet