Asustor
17 known vulnerabilities
Top Products
A stack-based buffer overflow vulnerability was found in the File Explorer on the ADM. The vulnerability occurs because
A path traversal vulnerability was found in the IHM Log handling of ADM. The vulnerability occurs because user-controlle
A path traversal vulnerability was found in the Wallpaper component of ADM. The vulnerability occurs because user-contro
A path traversal vulnerability was found in the VPN Clients on the ADM. The vulnerability occurs because user-controlled
A format string vulnerability was found in the Notification OAuth settings of ADM. The vulnerability occurs because user
A format string vulnerability was found in the Rsync Backup on the ADM. The vulnerability occurs because user-controlled
A format string vulnerability was found in the Internal Backup on the ADM. The vulnerability occurs because user-control
A stored format string vulnerability was found in the FTP Backup on the ADM. The vulnerability occurs because user-contr
A command injection vulnerability was found in the PPTP VPN Clients on the ADM. The vulnerability allows an administrati
A stack-based buffer overflow vulnerability was found in the VPN Clients on the ADM. The issue stems from the use of unb
The FTP Backup on the ADM does not properly sanitize filenames received from the FTP server when parsing directory listi
The FTP Backup on the ADM will not properly strictly enforce TLS certificate verification while connecting to an FTP ser
When a specific function is enabled while joining a AD Domain from ADM, an improper input parameters validation vulnerab
A third-party NAT traversal module fails to validate SSL/TLS certificates when connecting to the signaling server. While
The DDNS function uses an insecure HTTP connection or fails to validate the SSL/TLS certificate when querying an externa
The API communication component fails to validate the SSL/TLS certificate when sending HTTPS requests to the server. An
The DDNS update function in ADM fails to properly validate the hostname of the DDNS server's TLS/SSL certificate. Althou
Frequently Asked Questions
How many CVEs affect Asustor?
Asustor has 17 CVE records in our database, including 3 critical and 7 high severity vulnerabilities.
What are the most severe Asustor vulnerabilities?
Asustor has 3 critical severity (CVSS 9.0+) and 7 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Asustor vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Asustor products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Asustor Vulnerabilities
CyberStrike scans your infrastructure for Asustor vulnerabilities and provides real-time remediation guidance.
Get Started