CVE-2021-34346
Stack Based Overflow Vulnerability in NVR Storage Expansion
Vexday Risk Score
28Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 9.8EPSS 1.5%KEV nãoPoC —Patch —
Ciclo de vida
10 sept 2021Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A stack buffer overflow vulnerability has been reported to affect QNAP device running NVR Storage Expansion. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of NVR Storage Expansion: NVR Storage Expansion 1.0.6 ( 2021/08/03 ) and later
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
QNAP Systems Inc. · NVR Storage Expansion¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →