CVE-2023-23372

Summary

CVECVE-2023-23372
StateRESERVED
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2023-12-08 16:15:00 UTC
Updated2023-12-12 19:50:00 UTC
Description** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.

Risk And Classification

Problem Types: CWE-79

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Operating System Qnap Qts 4.5.4.1715 build_20210630 All All
Operating System Qnap Qts 4.5.4.1723 build_20210708 All All
Operating System Qnap Qts 4.5.4.1741 build_20210726 All All
Operating System Qnap Qts 4.5.4.1787 build_20210910 All All
Operating System Qnap Qts 4.5.4.1800 build_20210923 All All
Operating System Qnap Qts 4.5.4.1892 build_20211223 All All
Operating System Qnap Qts 4.5.4.1931 build_20220128 All All
Operating System Qnap Qts 4.5.4.2012 build_20220419 All All
Operating System Qnap Qts 4.5.4.2117 build_20220802 All All
Operating System Qnap Qts 4.5.4.2280 build_20230112 All All
Operating System Qnap Qts 4.5.4.2374 build_20230416 All All
Operating System Qnap Qts 5.0.1.2034 build_20220515 All All
Operating System Qnap Qts 5.0.1.2079 build_20220629 All All
Operating System Qnap Qts 5.0.1.2131 build_20220820 All All
Operating System Qnap Qts 5.0.1.2137 build_20220826 All All
Operating System Qnap Qts 5.0.1.2145 build_20220903 All All
Operating System Qnap Qts 5.0.1.2173 build_20221001 All All
Operating System Qnap Qts 5.0.1.2194 build_20221022 All All
Operating System Qnap Qts 5.0.1.2234 build_20221201 All All
Operating System Qnap Qts 5.0.1.2248 build_20221215 All All
Operating System Qnap Qts 5.0.1.2277 build_20230112 All All
Operating System Qnap Qts 5.0.1.2346 build_20230322 All All
Operating System Qnap Qts 5.0.1.2376 build_20230421 All All
Operating System Qnap Qts 5.1.0.2348 build_20230325 All All
Operating System Qnap Qts 5.1.0.2399 build_20230515 All All
Operating System Qnap Qts 5.1.0.2418 build_20230603 All All
Operating System Qnap Quts Hero h4.5.4.1771 build_20210825 All All
Operating System Qnap Quts Hero h4.5.4.1800 build_20210923 All All
Operating System Qnap Quts Hero h4.5.4.1813 build_20211006 All All
Operating System Qnap Quts Hero h4.5.4.1848 build_20211109 All All
Operating System Qnap Quts Hero h4.5.4.1892 build_20211223 All All
Operating System Qnap Quts Hero h4.5.4.1951 build_20220218 All All
Operating System Qnap Quts Hero h4.5.4.1971 build_20220310 All All
Operating System Qnap Quts Hero h4.5.4.1991 build_20220330 All All
Operating System Qnap Quts Hero h4.5.4.2052 build_20220530 All All
Operating System Qnap Quts Hero h4.5.4.2138 build_20220824 All All
Operating System Qnap Quts Hero h4.5.4.2217 build_20221111 All All
Operating System Qnap Quts Hero h4.5.4.2272 build_20230105 All All
Operating System Qnap Quts Hero h4.5.4.2374 build_20230417 All All
Operating System Qnap Quts Hero h5.0.1.2045 build_20220526 All All
Operating System Qnap Quts Hero h5.0.1.2192 build_20221020 All All
Operating System Qnap Quts Hero h5.0.1.2248 build_20221215 All All
Operating System Qnap Quts Hero h5.0.1.2269 build_20230104 All All
Operating System Qnap Quts Hero h5.0.1.2277 build_20230112 All All
Operating System Qnap Quts Hero h5.0.1.2348 build_20230324 All All
Operating System Qnap Quts Hero h5.0.1.2376 build_20230421 All All
Operating System Qnap Quts Hero h5.1.0.2409 build_20230525 All All

References

ReferenceSourceLinkTags
Vulnerability in QTS and QuTS hero - Security Advisory | QNAP www.qnap.com Vendor Advisory
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

Legacy QID Mappings

  • 731055 QNAP QTS Multiple Security Vulnerabilities (QSA-23-40,QSA-23-37,QSA-23-41)
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report