Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.151481
Category:General
Title:QNAP QuTS hero Multiple Vulnerabilities (QSA-23-27)
Summary:QNAP QuTS hero is prone to multiple vulnerabilities.
Description:Summary:
QNAP QuTS hero is prone to multiple vulnerabilities.

Vulnerability Insight:
The following vulnerabilities exist:

- CVE-2023-45039, CVE-2023-45040, CVE-2023-45041, CVE-2023-45042, CVE-2023-45043, CVE-2023-45044:
Multiple buffer copy without checking size of input vulnerabilities have been reported to affect
certain QNAP operating system versions. If exploited, the vulnerabilities could allow
authenticated administrators to execute code via a network.

Affected Software/OS:
QNAP QuTS hero version h5.1.x.

Solution:
Update to version h5.1.4.2596 build 20231128 or later.

CVSS Score:
8.3

CVSS Vector:
AV:N/AC:L/Au:M/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2023-45039
https://www.qnap.com/en/security-advisory/qsa-23-27
Common Vulnerability Exposure (CVE) ID: CVE-2023-45040
Common Vulnerability Exposure (CVE) ID: CVE-2023-45041
Common Vulnerability Exposure (CVE) ID: CVE-2023-45042
Common Vulnerability Exposure (CVE) ID: CVE-2023-45043
Common Vulnerability Exposure (CVE) ID: CVE-2023-45044
CopyrightCopyright (C) 2024 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.