Multiple vulnerabilities were identified in QNAP NAS. A remote attacker could exploit some of these vulnerabilities to trigger security restriction bypass, remote code execution, denial of service condition, sensitive information disclosure and data manipulation on the targeted system. Impact Denial of Service Information Disclosure Data Manipulation Remote Code Execution Security Restriction Bypass System / Technologies affected QTS 5.2.x QuTS hero h5.2.x QuTS hero h5.3.x Solutions Before installation of the software, please visit the vendor web-site for more details. Apply fixes issued by the vendor: https://www.qnap.com/en/security-advisory/qsa-26-04 https://www.qnap.com/en/security-advisory/qsa-26-05 https://www.qnap.com/en/security-advisory/qsa-26-06 https://www.qnap.com/en/security-advisory/qsa-26-08
Multiple vulnerabilities have been identified in QNAP NAS devices running QTS and QuTS hero, allowing remote attackers