Qnap
160 known vulnerabilities
Top Products
A buffer overflow vulnerability has been reported to affect File Station 5. The remote attackers can then exploit the vu
A buffer overflow vulnerability has been reported to affect File Station 5. The remote attackers can then exploit the vu
A buffer overflow vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, t
A missing authorization vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vul
An incorrect authorization vulnerability has been reported to affect File Station 6. If a remote attacker gains a user a
An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 6. If a r
A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote
A NULL pointer dereference vulnerability has been reported to affect File Station 6. If a remote attacker gains a user a
A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote
An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If a
A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack
A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack
A path traversal vulnerability has been reported to affect License Center. If a local attacker gains an administrator ac
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote
QuTS hero is not affected. We have already fixed the vulnerability in the following version: QTS 5.2.7.3256 build 20250
A cross-site request forgery (CSRF) vulnerability has been reported to affect Notification Center. The remote attackers
An authorization bypass through user-controlled key vulnerability has been reported to affect QuMagie. The remote attack
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker
A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. The remot
A missing authorization vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vul
A command injection vulnerability has been reported to affect QuNetSwitch. If a local attacker gains an administrator ac
A command injection vulnerability has been reported to affect QuNetSwitch. If a remote attacker gains a user account, th
A use of hard-coded credentials vulnerability has been reported to affect QuNetSwitch. The remote attackers can then exp
A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers c
A command injection vulnerability has been reported to affect QuNetSwitch. The remote attackers can then exploit the vul
A cross-site scripting (XSS) vulnerability has been reported to affect QuFTP Service. If a remote attacker gains an admi
An SQL injection vulnerability has been reported to affect QHora. If a local attacker gains an administrator account, th
An improper neutralization of escape, meta, or control sequences vulnerability has been reported to affect QHora. If a l
A weak authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they c
An improper restriction of communication channel to intended endpoints vulnerability has been reported to affect QHora.
A buffer overflow vulnerability has been reported to affect Media Streaming Add-On. The remote attackers can then exploi
A use of hard-coded password vulnerability has been reported to affect Hyper Data Protector. The remote attackers can th
A command injection vulnerability has been reported to affect several QNAP operating system versions. If an attacker gai
An SQL injection vulnerability has been reported to affect Video Station. If an attacker gains local network access who
An improper certificate validation vulnerability has been reported to affect Video Station. If an attacker gains local n
A path traversal vulnerability has been reported to affect File Station 6. If a remote attacker gains a user account, th
A path traversal vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the
A path traversal vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, th
A link following vulnerability has been reported to affect several QNAP operating system versions. The remote attackers
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote
A path traversal vulnerability has been reported to affect File Station 5. If a local attacker gains an administrator ac
A path traversal vulnerability has been reported to affect File Station 5. If a local attacker gains an administrator ac
An uncontrolled resource consumption vulnerability has been reported to affect File Station 5. If a remote attacker gain
A path traversal vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, th
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains an admini
An allocation of resources without limits or throttling vulnerability has been reported to affect Qsync Central. If a re
Frequently Asked Questions
How many CVEs affect Qnap?
Qnap has 160 CVE records in our database, including 14 critical and 45 high severity vulnerabilities.
What are the most severe Qnap vulnerabilities?
Qnap has 14 critical severity (CVSS 9.0+) and 45 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Qnap vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qnap products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Qnap Vulnerabilities
CyberStrike scans your infrastructure for Qnap vulnerabilities and provides real-time remediation guidance.
Get Started