Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-32967

An incorrect authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to bypass intended access restrictions via a network. QTS 5.x, QuTS hero are not affected. We have already fixed the vulnerability in the following versions: QuTScloud c5.1.5.2651 and later QTS 4.5.4.2627 build 20231225 and later
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.8%
CVSS Severity
CVSS v3 Score 5.0
Products affected by CVE-2023-32967
  • Qnap » Qts » Version: 4.5.4.1715
    cpe:2.3:o:qnap:qts:4.5.4.1715
  • Qnap » Qts » Version: 4.5.4.1723
    cpe:2.3:o:qnap:qts:4.5.4.1723
  • Qnap » Qts » Version: 4.5.4.1741
    cpe:2.3:o:qnap:qts:4.5.4.1741
  • Qnap » Qts » Version: 4.5.4.1787
    cpe:2.3:o:qnap:qts:4.5.4.1787
  • Qnap » Qts » Version: 4.5.4.1800
    cpe:2.3:o:qnap:qts:4.5.4.1800
  • Qnap » Qts » Version: 4.5.4.1892
    cpe:2.3:o:qnap:qts:4.5.4.1892
  • Qnap » Qts » Version: 4.5.4.1931
    cpe:2.3:o:qnap:qts:4.5.4.1931
  • Qnap » Qts » Version: 4.5.4.2012
    cpe:2.3:o:qnap:qts:4.5.4.2012
  • Qnap » Qts » Version: 4.5.4.2117
    cpe:2.3:o:qnap:qts:4.5.4.2117
  • Qnap » Qts » Version: 4.5.4.2280
    cpe:2.3:o:qnap:qts:4.5.4.2280
  • Qnap » Qts » Version: 4.5.4.2374
    cpe:2.3:o:qnap:qts:4.5.4.2374
  • Qnap » Qts » Version: 4.5.4.2627
    cpe:2.3:o:qnap:qts:4.5.4.2627
  • Qnap » Qutscloud » Version: c5.1.0.2498
    cpe:2.3:o:qnap:qutscloud:c5.1.0.2498


Contact Us

Shodan ® - All rights reserved