← back
CVE-2021-28804

Command Injection Vulnerabilities in QTS and QuTS hero

EPSS 1.8%CWE-78
A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary commands in a compromised application. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.1.1540 build 20210107. QNAP Systems Inc. QuTS hero versions prior to h4.5.1.1582 build 20210217.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →