QNAP Flaws Enable Remote Code Execution Under Certain Conditions

Threat Level – Red | Vulnerability Report
Download PDF

Summary:

Multiple vulnerabilities have been reported that affect certain versions of the QNAP operating system. One of these vulnerabilities, CVE-2024-27130, is an unauthenticated stack overflow vulnerability for which a proof-of-concept has been released. This vulnerability may be exploited for remote code execution, posing a significant security risk to affected systems.
 

Threat Level – Red | Vulnerability Report

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox