Qnap
Qnap QVR: vulnerabilidades y CVE
Qnap QVR tiene 10 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 6 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses0
Críticas6
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-52856 | Crítica (9.3) | 0.63% | — | 29 ago 2025 | An improper authentication vulnerability has been reported to affect VioStor. If a remote attacker, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the… |
| CVE-2022-27597 | Baja (2.7) | 0.66% | — | 29 mar 2023 | A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability allows remote authenticated administrators to get secret values. The vulnerability affects the… |
| CVE-2023-23355 | Alta (7.2) | 1.2% | — | 29 mar 2023 | An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote authenticated administrators to execute commands via unspecified vectors.… |
| CVE-2022-27588 | Crítica (9.8) | 1.4% | — | 5 may 2022 | We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.6 build 20220401 and later |
| CVE-2021-38686 | Alta (8.8) | 0.97% | — | 26 nov 2021 | An improper authentication vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows attackers to compromise the security of the system. We have already fixed this… |
| CVE-2021-38685 | Crítica (9.8) | 1.5% | — | 26 nov 2021 | A command injection vulnerability has been reported to affect QNAP device, VioStor. If exploited, this vulnerability allows remote attackers to run arbitrary commands. We have already fixed this vulnerability in the… |
| CVE-2021-34352 | Crítica (9.8) | 1.5% | — | 1 oct 2021 | A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in… |
| CVE-2021-34351 | Crítica (9.8) | 1.5% | — | 27 sept 2021 | A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in… |
| CVE-2021-34349 | Alta (7.2) | 1.5% | — | 27 sept 2021 | A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in… |
| CVE-2021-34348 | Crítica (9.8) | 1.5% | — | 27 sept 2021 | A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.