Qnap Systems QuLog Center是中国威联通(Qnap Systems)公司的一个报告栏,里面记录了系统汇报出来的各项事件。 QuLog Center 存在跨站脚本漏洞,该漏洞源于一个 XSS 漏洞会影响运行 QTS 和 QuTS hero 的 QNAP NAS。 攻击者可利用该漏洞注入恶意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| QNAP Systems Inc. | QTS | unspecified ~ 4.5.2.1566 Build 20210202 | - |
|
| QNAP Systems Inc. | QuTS hero | unspecified ~ h4.5.2.1638 build 20210414 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-28804 | Command Injection Vulnerabilities in QTS and QuTS hero | |
| CVE-2021-28803 | Stored XSS Vulnerability in Q'center | |
| CVE-2021-28802 | Command Injection Vulnerabilities in QTS and QuTS hero | |
| CVE-2020-36196 | Stored XSS Vulnerability in QuLog Center |
No comments yet