Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

QNAP Systems Inc. — Vulnerabilities & Security Advisories 558

Browse all 558 CVE security advisories affecting QNAP Systems Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

QNAP Systems Inc. manufactures network-attached storage devices and enterprise storage solutions, primarily serving small to medium-sized businesses and home users seeking centralized data management. Historically, the company’s firmware has exhibited a high volume of vulnerabilities, including remote code execution, cross-site scripting, and privilege escalation flaws. These issues often stem from insufficient input validation and improper access controls within the web management interface or embedded services. Notable incidents involve critical RCE vulnerabilities that allow unauthenticated attackers to gain full system control, exposing connected data to theft or ransomware encryption. The sheer number of recorded CVEs highlights persistent challenges in secure coding practices and rigorous patch management across its diverse product line. While QNAP provides security updates, the frequency of disclosed flaws necessitates strict network segmentation and proactive monitoring for administrators relying on these storage appliances for critical infrastructure.

Found 234 results / 558 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2023-39297 QTS, QuTS hero, QuTScloud — QTS CWE-78 8.8 High 2024-02-02
CVE-2023-39302 QTS, QuTS hero, QuTScloud — QTS CWE-78 6.6 Medium 2024-02-02
CVE-2023-39294 QTS, QuTS hero — QTS CWE-78 6.6 Medium 2024-01-05
CVE-2023-39296 QTS, QuTS hero — QTS CWE-1321 7.5 High 2024-01-05
CVE-2023-45040 QTS, QuTS hero — QTS CWE-120 3.8 Low 2024-01-05
CVE-2023-45039 QTS, QuTS hero — QTS CWE-120 3.8 Low 2024-01-05
CVE-2023-32968 QTS, QuTS hero — QTS CWE-120 4.5 Medium 2023-12-08
CVE-2023-23372 QTS, QuTS hero — QTS CWE-79 6.5 Medium 2023-12-08
CVE-2023-32975 QTS, QuTS hero — QTS CWE-120 4.9 Medium 2023-12-08
CVE-2023-23367 QTS, QuTS hero, QuTScloud — QTS CWE-78 4.7 Medium 2023-11-10
CVE-2023-39301 QTS, QuTS hero, QuTScloud — QTS CWE-918 4.3 Medium 2023-11-03
CVE-2023-23368 QTS, QuTS hero, QuTScloud — QTS CWE-78 9.8 Critical 2023-11-03
CVE-2023-32974 QTS, QuTS hero, QuTScloud — QTS CWE-22 7.5 High 2023-10-13
CVE-2023-32973 QTS, QuTS hero, QuTScloud — QTS CWE-120 3.8 Low 2023-10-13
CVE-2023-32972 QTS, QuTS hero, QuTScloud — QTS CWE-120 3.8 Low 2023-10-06
CVE-2023-32971 QTS, QuTS hero, QuTScloud — QTS CWE-120 3.8 Low 2023-10-06
CVE-2023-23363 QTS — QTS CWE-120 8.1 High 2023-09-22
CVE-2023-23362 QTS, QuTS hero, QuTScloud — QTS CWE-78 8.8 High 2023-09-22
CVE-2023-34973 QTS, QuTS hero — QTS CWE-331 3.1 Low 2023-08-24
CVE-2023-34972 QTS, QuTS hero and QuTScloud — QTS CWE-319 3.5 Low 2023-08-24
CVE-2023-34971 QTS, QuTS hero — QTS CWE-326 7.1 High 2023-08-24
CVE-2023-23355 QTS, QuTS hero, QuTScloud, QVP (QVR Pro appliances), QVR — QTS CWE-77 6.6 Medium 2023-03-29
CVE-2022-27597 QTS, QuTS hero, QuTScloud, QVP (QVR Pro appliances) — QTS CWE-1295 2.7 Low 2023-03-29
CVE-2022-27598 QTS, QuTS hero, QuTScloud, QVP (QVR Pro appliances) — QTS CWE-125 2.7 Low 2023-03-29
CVE-2021-44053 Reflected XSS — QTS CWE-79 5.7 Medium 2022-05-05
CVE-2021-34343 Buffer Overflow Vulnerability in QTS, QuTS hero, and QuTScloud — QTS CWE-787 6.0 Medium 2021-09-10
CVE-2021-28816 Stack Buffer Overflow Vulnerabilities in QTS, QuTS hero, and QuTScloud — QTS CWE-787 7.6 High 2021-09-10
CVE-2018-19957 Insufficient HTTP Security Headers in QTS, QuTS hero, and QuTScloud — QTS CWE-1021 6.1 - 2021-09-10
CVE-2021-28804 Command Injection Vulnerabilities in QTS and QuTS hero — QTS CWE-78 9.8 - 2021-07-01
CVE-2021-28802 Command Injection Vulnerabilities in QTS and QuTS hero — QTS CWE-78 9.8 - 2021-07-01

This page lists every published CVE security advisory associated with QNAP Systems Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.