CVE-2023-47218
CVSS 3.1 Score 5.8 of 10 (medium)
Details
Published Feb 13, 2024
Updated: Feb 15, 2024
CWE ID 78
CWE ID 77
Summary
CVE-2023-47218 is an OS command injection vulnerability that affects multiple QNAP operating system versions. Successful exploitation of this weakness could permit users to execute network-based commands. The vulnerability has been addressed in QTS 5.1.5.2645 build 20240116 and later, QuTS hero h5.1.5.2647 build 20240118 and later, and QuTScloud c5.1.5.2651 and later. Users running impacted versions are advised to update their systems as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share