Known Vulnerabilities for Quts Hero by Qnap
Listed below are 10 of the newest known vulnerabilities associated with "Quts Hero" by "Qnap".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-34343 | A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited... | 7.2 - HIGH | 2021-09-10 | 2022-02-10 |
| CVE-2021-28816 | A stack buffer overflow vulnerability has been reported to affect QNAP device running QTS, QuTScloud, QuTS hero. If exploited... | 8.8 - HIGH | 2021-09-10 | 2022-02-10 |
| CVE-2021-28815 | Insecure storage of sensitive information has been reported to affect QNAP NAS running myQNAPcloud Link. If exploited, this v... | 4.9 - MEDIUM | 2021-06-16 | 2021-06-23 |
| CVE-2021-28812 | A command injection vulnerability has been reported to affect certain versions of Video Station. If exploited, this vulnerabi... | 8.8 - HIGH | 2021-06-03 | 2022-10-18 |
| CVE-2021-28807 | A post-authentication reflected XSS vulnerability has been reported to affect QNAP NAS running Q’center. If exploited, this... | 5.4 - MEDIUM | 2021-06-03 | 2021-09-14 |
| CVE-2021-28806 | A DOM-based XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerabilit... | 5.4 - MEDIUM | 2021-06-03 | 2021-06-09 |
| CVE-2021-28804 | A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows a... | 9.8 - CRITICAL | 2021-07-01 | 2021-07-07 |
| CVE-2021-28802 | A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows a... | 9.8 - CRITICAL | 2021-07-01 | 2021-07-06 |
| CVE-2021-28799 | An improper authorization vulnerability has been reported to affect QNAP NAS running HBS 3 (Hybrid Backup Sync. ) If exploite... | 9.8 - CRITICAL | 2021-05-13 | 2023-11-14 |
| CVE-2021-28798 | A relative path traversal vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vu... | 7.5 - HIGH | 2021-05-21 | 2022-10-18 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Qnap | Quts Hero | h4.5.1.1491 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.1.1472 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.1 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.0.1409 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.0.1352 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.0.1308 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.0.1279 | All | All | All |
| Application | Qnap | Quts Hero | h4.5.0 | All | All | All |