QNAP Systems QuLog Center是中国威联通科技(QNAP Systems)公司的一个报告栏,里面记录了系统汇报出来的各项事件。 QNAP Systems QuLog Center 1.5版本、1.4版本和1.3版本存在跨站脚本漏洞,该漏洞源于允许获得管理员访问权限的远程攻击者绕过安全机制或读取应用程序数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| QNAP Systems Inc. | QuLog Center | 1.5.x.x ~ 1.5.0.738 ( 2023/03/06 ) | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-27595 | 7.8 HIGH | QVPN Device Client |
| CVE-2023-23354 | 7.3 HIGH | QuLog Center |
| CVE-2022-27600 | 6.8 MEDIUM | QTS, QuTS hero, QuTScloud |
| CVE-2023-23356 | 5.5 MEDIUM | QuFirewall |
No comments yet