Known vulnerabilities in QNAP QTS 4.5.1.1480 Build 20201108 - page 2

Software: QNAP QTS
Version: 4.5.1.1480 Build 20201108
Software CPE: cpe:2.3:a:qnap_systems:qnap_qts:*:*:*:*:*:*:*:*
Total vulnerabilities: 32
Public exploits: 6
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting QNAP QTS version 4.5.1.1480 Build 20201108 QNAP QTS 4.5.1.1480 Build 20201108 is affected by 32 vulnerabilities: 1 critical, 13 high, 13 medium, 5 low Critical High Medium Low

Vulnerabilities (32)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61622 - Out-of-bounds read
CVE-2022-23124
CWE-125 Medium
No
No
4.5.4.2012 20220419 25.03.2022 SB2022032507
SB2022042577
SB2022042578
and 5 more
#VU61621 - Out-of-bounds read
CVE-2022-23123
CWE-125 Medium
No
No
4.5.4.2012 20220419 25.03.2022 SB2022032507
SB2022042577
SB2022042578
and 6 more
#VU61620 - Improper Handling of Exceptional Conditions
CVE-2022-23121
CWE-755 High
No
No
4.5.4.2012 20220419 25.03.2022 SB2022032507
SB2022042577
SB2022042578
and 7 more
#VU61619 - Stack-based buffer overflow
CVE-2022-23125
CWE-121 High
No
No
4.5.4.2012 20220419 25.03.2022 SB2022032507
SB2022042577
SB2022042578
and 6 more
#VU61618 - Stack-based buffer overflow
CVE-2022-23122
CWE-121 High
No
No
4.5.4.2012 20220419 25.03.2022 SB2022032507
SB2022042577
SB2022042578
and 5 more
#VU61617 - Stack-based buffer overflow
CVE-2022-0194
CWE-121 High
No
No
4.5.4.2012 20220419 25.03.2022 SB2022032507
SB2022042577
SB2022042578
and 5 more
#VU59601 - Improper Control of Generation of Code ('Code Injection')
CWE-94 Critical
No
Exploited
4.5.4.1892 20211223, 5.0.0.1891 20211221 14.01.2022 SB2022011403
#VU59112 - Exposure of sensitive information to an unauthorized actor
CVE-2021-34347
CWE-200 Medium
No
No
4.5.4.1787 20210910 29.12.2021 SB2021122910
#VU56436 - Stack-based buffer overflow
CVE-2021-34343
CWE-121 High
No
No
4.3.3.1693 20210624, 4.3.6.1750 20210730, 5.0.0.1716 20210701 09.09.2021 SB2021090917
#VU56435 - Stack-based buffer overflow
CVE-2021-28816
CWE-121 High
No
No
4.3.3.1693 20210624, 4.3.6.1750 20210730, 5.0.0.1716 20210701 09.09.2021 SB2021090917
#VU52762 - Command injection
CVE-2021-28800
CWE-77 High
No
No
4.3.3.1624 20210416, 4.3.6.1663 20210504, 4.5.3.1652 20210428 29.04.2021 SB2021042927
#VU49147 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2020-25847
CWE-78 High
No
No
4.5.1.1495 20201123 24.12.2020 SB2020122405


Showing elements 21 - 40 out of 32