Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-27600


An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2277 and later QTS 4.5.4.2280 build 20230112 and later QuTS hero h5.0.1.2277 build 20230112 and later QuTS hero h4.5.4.2374 build 20230417 and later QuTScloud c5.0.1.2374 and later


Published

2024-12-19T02:15:21.493

Last Modified

2025-12-08T18:46:12.037

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-400
    CWE-798

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qnap qts < 4.5.4.2280 Yes
Operating System qnap qts < 5.0.1.2277 Yes
Operating System qnap qts 4.5.4.2280 Yes
Operating System qnap qts 5.0.1.2277 Yes
Operating System qnap quts_hero < h4.5.4.2374 Yes
Operating System qnap quts_hero < h5.0.1.2277 Yes
Operating System qnap quts_hero h4.5.4.2374 Yes
Operating System qnap quts_hero h5.0.1.2277 Yes
Operating System qnap qutscloud < c5.0.1.2374 Yes

References