Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

QNAP Systems Inc. — Vulnerabilities & Security Advisories 532

Browse all 532 CVE security advisories affecting QNAP Systems Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

QNAP Systems Inc. manufactures network-attached storage devices and enterprise storage solutions, primarily serving small to medium-sized businesses and home users seeking centralized data management. Historically, the company’s firmware has exhibited a high volume of vulnerabilities, including remote code execution, cross-site scripting, and privilege escalation flaws. These issues often stem from insufficient input validation and improper access controls within the web management interface or embedded services. Notable incidents involve critical RCE vulnerabilities that allow unauthenticated attackers to gain full system control, exposing connected data to theft or ransomware encryption. The sheer number of recorded CVEs highlights persistent challenges in secure coding practices and rigorous patch management across its diverse product line. While QNAP provides security updates, the frequency of disclosed flaws necessitates strict network segmentation and proactive monitoring for administrators relying on these storage appliances for critical infrastructure.

CVE IDTitleCVSSSeverityPublished
CVE-2024-27125 Helpdesk — HelpdeskCWE-79 3.5 Low2024-09-06
CVE-2024-32771 QTS, QuTS hero — QTSCWE-307 2.6 Low2024-09-06
CVE-2023-39298 QTS, QuTS hero — QTSCWE-862 7.8 High2024-09-06
CVE-2023-39300 QTS — QTSCWE-78 7.2 High2024-09-06
CVE-2023-45038 Music Station — Music StationCWE-287 4.3 Medium2024-09-06
CVE-2023-50360 Video Station — Video StationCWE-89 8.8 High2024-09-06
CVE-2023-47563 Video Station — Video StationCWE-77 7.4 High2024-09-06
CVE-2024-21904 QTS, QuTS hero — QTSCWE-22 5.9 Medium2024-09-06
CVE-2022-27592 QVR Smart Client — QVR Smart ClientCWE-428 6.7 Medium2024-09-06
CVE-2024-27126 Notes Station 3 — Notes Station 3CWE-79 6.3 Medium2024-09-06
CVE-2024-27122 Notes Station 3 — Notes Station 3CWE-79 6.3 Medium2024-09-06
CVE-2024-21903 QTS, QuTS hero — QTSCWE-77 6.6 Medium2024-09-06
CVE-2024-21898 QTS, QuTS hero — QTSCWE-78 8.8 High2024-09-06
CVE-2024-21897 QTS, QuTS hero — QTSCWE-79 8.9 High2024-09-06
CVE-2023-51368 QTS, QuTS hero — QTSCWE-476 5.4 Medium2024-09-06
CVE-2023-51367 QTS, QuTS hero — QTSCWE-120 5.4 Medium2024-09-06
CVE-2023-51366 QTS, QuTS hero — QTSCWE-22 8.7 High2024-09-06
CVE-2023-50366 QTS, QuTS hero — QTSCWE-79 4.3 Medium2024-09-06
CVE-2024-32765 QTS, QuTS hero — QTSCWE-291 4.2 Medium2024-08-09
CVE-2024-27130 QTS, QuTS hero — QTSCWE-120 7.2 High2024-05-21
CVE-2024-27129 QTS, QuTS hero — QTSCWE-120 6.4 Medium2024-05-21
CVE-2024-27128 QTS, QuTS hero — QTSCWE-120 6.4 Medium2024-05-21
CVE-2024-27127 QTS, QuTS hero — QTSCWE-415 7.2 High2024-05-21
CVE-2024-21902 QTS, QuTS hero — QTSCWE-732 6.4 Medium2024-05-21
CVE-2023-47220 Media Streaming add-on — Media Streaming add-on CWE-78 6.6 Medium2024-05-03
CVE-2023-41290 QuFirewall — QuFirewallCWE-22 4.1 Medium2024-04-26
CVE-2023-41291 QuFirewall — QuFirewallCWE-22 5.5 Medium2024-04-26
CVE-2023-47222 Media Streaming add-on — Media Streaming add-on CWE-200 9.6 Critical2024-04-26
CVE-2023-50361 QTS, QuTS hero — QTSCWE-120 5.0 Medium2024-04-26
CVE-2023-50362 QTS, QuTS hero — QTSCWE-120 5.0 Medium2024-04-26

This page lists every published CVE security advisory associated with QNAP Systems Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.