CVE-2023-45027
CVSS 3.1 Score 4.9 of 10 (medium)
Details
Published Feb 2, 2024
Updated: Feb 6, 2024
CWE ID 22
Summary
CVE-2023-45027 is a path traversal vulnerability affecting several QNAP operating system versions. This issue allows authenticated administrators to access and read the contents of unexpected files, potentially exposing sensitive data via a network. The vulnerability has been addressed in QTS 5.1.5.2645 build 20240116 and later, QuTS hero h5.1.5.2647 build 20240118 and later, and QuTScloud c5.1.5.2651 and later.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- QNAP QTS
Affected Vendors
- QNAP Systems