CVE-2023-47218
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.5.2645 build 20240116 and later QuTS hero h5.1.5.2647 build 20240118 and later QuTScloud c5.1.5.2651 and later
- Published Feb 13, 2024
- CVSS 8.3 high
- 89.9% chance of exploitation in the next 30 days (EPSS)
- A Metasploit module exploits it
Affected software
In the news
- XWiki Under Increased Attack VulnCheck Blog ·