← Back

CVE-2023-47568

nvd nist
Published: Feb 2, 2024Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.5.2645 build 20240116 and later QTS 4.5.4.2627 build 20231225 and later QuTS hero h5.1.5.2647 build 20240118 and later QuTS hero h4.5.4.2626 build 20231225 and later QuTScloud c5.1.5.2651 and later

Affected (47)

3 products
Qts
Quts Hero
Qutscloud
Configuration A
47 vulnerable
Vulnerable SoftwareAffected Versions
Qnap
Version 4.5.4.1715 build_20210630
Version 4.5.4.1723 build_20210708
Version 4.5.4.1741 build_20210726
Version 4.5.4.1787 build_20210910
Version 4.5.4.1800 build_20210923
Version 4.5.4.1892 build_20211223
Version 4.5.4.1931 build_20220128
Version 4.5.4.2012 build_20220419
Version 4.5.4.2117 build_20220802
Version 4.5.4.2280 build_20230112
Version 4.5.4.2374 build_20230416
Version 4.5.4.2627
Version 5.1.0.2348 build_20230325
Version 5.1.0.2399 build_20230515
Version 5.1.0.2418 build_20230603
Version 5.1.0.2444 build_20230629
Version 5.1.0.2466 build_20230721
Version 5.1.1.2491 build_20230815
Version 5.1.2.2533 build_20230926
Version 5.1.3.2578 build_20231110
Version 5.1.4.2596 build_20231128
Version 5.1.5.2645
Qnap
Version h4.5.4.1771 build_20210825
Version h4.5.4.1800 build_20210923
Version h4.5.4.1813 build_20211006
Version h4.5.4.1848 build_20211109
Version h4.5.4.1892 build_20211223
Version h4.5.4.1951 build_20220218
Version h4.5.4.1971 build_20220310
Version h4.5.4.1991 build_20220330
Version h4.5.4.2052 build_20220530
Version h4.5.4.2138 build_20220824
Version h4.5.4.2217 build_20221111
Version h4.5.4.2272 build_20230105
Version h4.5.4.2374 build_20230417
Version h4.5.4.2476 build_20230728
Version h4.5.4.2626
Version h5.1.0.2409 build_20230525
Version h5.1.0.2424 build_20230609
Version h5.1.0.2453 build_20230708
Version h5.1.0.2466 build_20230721
Version h5.1.1.2488 build_20230812
Version h5.1.2.2534 build_20230927
Version h5.1.3.2578 build_20231110
Version h5.1.4.2596 build_20231128
Version h5.1.5.2647
Version c5.1.0.2498 build_20230822

References (2)

Source: security@qnapsecurity.com.tw
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.