An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2277 and later QTS 4.5.4.2280 build 20230112 and later QuTS hero h5.0.1.2277 build 20230112 and later QuTS hero h4.5.4.2374 build 20230417 and later QuTScloud c5.0.1.2374 and later
2024-12-19T02:15:21.493
2025-12-08T18:46:12.037
Analyzed
CVSSv3.1: 6.8 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | qnap | qts | < 4.5.4.2280 | Yes |
| Operating System | qnap | qts | < 5.0.1.2277 | Yes |
| Operating System | qnap | qts | 4.5.4.2280 | Yes |
| Operating System | qnap | qts | 5.0.1.2277 | Yes |
| Operating System | qnap | quts_hero | < h4.5.4.2374 | Yes |
| Operating System | qnap | quts_hero | < h5.0.1.2277 | Yes |
| Operating System | qnap | quts_hero | h4.5.4.2374 | Yes |
| Operating System | qnap | quts_hero | h5.0.1.2277 | Yes |
| Operating System | qnap | qutscloud | < c5.0.1.2374 | Yes |