Fixed Intel

CVE Tracker

Track known exploited vulnerabilities, CISA KEV alerts, and linked threat intelligence.

2,235

Total CVEs

1,590

CISA KEV

41

Known Exploits

8.8

Avg CVSS Score

Severity Distribution

CRITICAL 8
HIGH 1600
MEDIUM 7
INFO 620

Showing 12 of 12 CVEs matching "QNAP" · HIGH · CISA KEV

CVE-2023-47565KEV
High

QNAP VioStar NVR contains an OS command injection vulnerability that allows authenticated users to execute commands via a network.

QNAPEPSS 85.9%
CVE-2022-27593KEV
High

Certain QNAP NAS running Photo Station with internet exposure contain an externally controlled reference to a resource vulnerability which can allow an attacker to modify system files. This vulnerability was observed being utilized in a Deadbolt ransomware campaign.

QNAPEPSS 93.0%
CVE-2019-7193KEV
High

QNAP QTS contains an improper input validation vulnerability allowing remote attackers to inject code on the system.

QNAPEPSS 25.8%
CVE-2019-7195KEV
High

QNAP devices running Photo Station contain an external control of file name or path vulnerability allowing remote attackers to access or modify system files.

QNAPEPSS 94.1%
CVE-2019-7194KEV
High

QNAP devices running Photo Station contain an external control of file name or path vulnerability allowing remote attackers to access or modify system files.

QNAPEPSS 93.9%
CVE-2019-7192KEV
High

QNAP NAS devices running Photo Station contain an improper access control vulnerability allowing remote attackers to gain unauthorized access to the system.

QNAPEPSS 94.3%
CVE-2018-19943KEV
High

A cross-site scripting vulnerability affecting QNAP NAS File Station could allow remote attackers to inject malicious code.

QNAPEPSS 5.5%
CVE-2018-19949KEV
High

A command injection vulnerability affecting QNAP NAS File Station could allow remote attackers to run commands.

QNAPEPSS 44.2%
CVE-2018-19953KEV
High

A cross-site scripting vulnerability affecting QNAP NAS File Station could allow remote attackers to inject malicious code.

QNAPEPSS 31.5%
CVE-2020-2509KEV
High

QNAP NAS devices contain a command injection vulnerability which could allow attackers to perform remote code execution.

QNAPEPSS 85.0%
CVE-2021-28799KEV
High

QNAP NAS running HBS 3 contains an improper authorization vulnerability which can allow remote attackers to log in to a device.

QNAPEPSS 91.1%
CVE-2020-2506KEV
High

QNAP Helpdesk contains an improper access control vulnerability which could allow an attacker to gain privileges or to read sensitive information.

QNAP SystemsEPSS 18.0%