← Back

CVE-2023-23356

nvd nist
Published: Dec 19, 2024Modified: Sep 24, 2025

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute arbitrary commands. We have already fixed the vulnerability in the following versions: QuFirewall 2.3.3 ( 2023/03/27 ) and later and later

Affected (1)

Products: Qnap: Qufirewall
1 product
Qufirewall
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.3.3

References (1)

Source: security@qnapsecurity.com.tw
Vendor Advisory

Timeline

No history available yet.