QNAP QuTS Hero H5.1.7.2788 Build 20240607

CPE Details

QNAP QuTS Hero H5.1.7.2788 Build 20240607
h5.1.7.2788
2024-09-11
11h44 +00:00
2024-09-11
11h44 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:qnap:quts_hero:h5.1.7.2788:build_20240607:*:*:*:*:*:*

Informations

Vendor

qnap

Product

quts_hero

Version

h5.1.7.2788

Update

build_20240607

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-38641 2024-09-06 16h27 +00:00 An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspecified vectors. We have already fixed the vulnerability in the following versions: QTS 5.1.8.2823 build 20240712 and later QuTS hero h5.1.8.2823 build 20240712 and later
7.3
Haute
CVE-2024-32763 2024-09-06 16h27 +00:00 A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to execute code via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.8.2823 build 20240712 and later QuTS hero h5.1.8.2823 build 20240712 and later
5.3
Moyen
CVE-2024-21906 2024-09-06 16h27 +00:00 An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.8.2823 build 20240712 and later QuTS hero h5.1.8.2823 build 20240712 and later
4.7
Moyen
CVE-2024-32771 2024-09-06 16h27 +00:00 An improper restriction of excessive authentication attempts vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network authenticated administrators to perform an arbitrary number of authentication attempts via unspecified vectors. QuTScloud is not affected. We have already fixed the vulnerability in the following versions: QTS 5.2.0.2782 build 20240601 and later QuTS hero h5.2.0.2782 build 20240601 and later
2.6
Bas
CVE-2023-39298 2024-09-06 16h27 +00:00 A missing authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local authenticated users to access data or perform actions that they should not be allowed to perform via unspecified vectors. QuTScloud, is not affected. We have already fixed the vulnerability in the following versions: QTS 5.2.0.2737 build 20240417 and later QuTS hero h5.2.0.2782 build 20240601 and later
7.8
Haute