Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.154147
Categoría:General
Título:QNAP QTS Multiple Vulnerabilities (QSA-24-54)
Resumen:QNAP QTS is prone to multiple vulnerabilities.
Descripción:Summary:
QNAP QTS is prone to multiple vulnerabilities.

Vulnerability Insight:
The following vulnerabilities exist:

- CVE-2024-50405: CRLF injection could allow remote attackers who have gained administrator
access to modify application data

- CVE-2024-53692: Command injection could allow remote attackers who have gained administrator
access to execute arbitrary commands

- CVE-2024-53693: CRLF Injection could allow remote attackers who have gained user access to
modify application data

- CVE-2024-53697, CVE-2024-53699: Out-of-bounds write could allow remote attackers who have
gained administrator access to modify or corrupt memory

- CVE-2024-53698: Double free could allow remote attackers who have gained administrator access
to modify memory

Affected Software/OS:
QNAP QTS version 5.2.x prior to 5.2.3.3006 build 20250108.

Solution:
Update to version 5.2.3.3006 build 20250108 or later.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:L/Au:S/C:N/I:N/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2024-50405
Common Vulnerability Exposure (CVE) ID: CVE-2024-53692
Common Vulnerability Exposure (CVE) ID: CVE-2024-53693
Common Vulnerability Exposure (CVE) ID: CVE-2024-53697
Common Vulnerability Exposure (CVE) ID: CVE-2024-53698
Common Vulnerability Exposure (CVE) ID: CVE-2024-53699
CopyrightCopyright (C) 2025 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.