Known vulnerabilities in QNAP QTS 4.3.4.2107 build 20220712

Software: QNAP QTS
Version: 4.3.4.2107 build 20220712
Software CPE: cpe:2.3:a:qnap_systems:qnap_qts:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 3
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting QNAP QTS version 4.3.4.2107 build 20220712 QNAP QTS 4.3.4.2107 build 20220712 is affected by 4 vulnerabilities: 3 high, 1 medium Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130763 - Resource Management Errors
CVE-2026-43284
CWE-399 High
Public exploit available
Exploited
- 08.05.2026 SB20260508111
SB20260508120
SB20260508121
and 72 more
#VU130759 - Resource Management Errors
CVE-2026-43500
CWE-399 High
Public exploit available
Exploited
- 08.05.2026 SB20260508108
SB20260508120
SB20260508121
and 32 more
#VU86371 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-50358
CWE-78 High
No
Exploited
4.2.6 20240131, 4.3.3.2644 20240131, 4.3.4.2675 20240131, 4.3.6.2665 20240131, 4.5.4.2627 20231225, 5.1.5.2645 20240116 13.02.2024 SB2024021313
#VU86370 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-47218
CWE-78 Medium
Public exploit available
No
4.2.6 20240131, 4.3.3.2644 20240131, 4.3.4.2675 20240131, 4.3.6.2665 20240131, 4.5.4.2627 20231225, 5.1.5.2645 20240116 13.02.2024 SB2024021313