CVE-2022-27600

CVSS 3.1 Score 6.8 of 10 (medium)

Details

Published Dec 19, 2024
CWE ID 400
CWE ID 798

Summary

CVE-2022-27600 is an uncontrolled resource consumption vulnerability that puts several QNAP operating system versions at risk. This issue can be exploited by remote attackers to launch a denial-of-service (DoS) attack. Affected versions include QTS 5.0.1.2277 and earlier, QTS 4.5.4.2280 and earlier, QuTS hero h5.0.1.2277 and earlier, and QuTS hero h4.5.4.2374 and earlier for QTScloud. QNAP has released patches for these versions to address the vulnerability, which users are urged to install promptly to mitigate the risk of a potential attack.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share