CVE-2022-27600
CVSS 3.1 Score 6.8 of 10 (medium)
Details
Published Dec 19, 2024
CWE ID 400
CWE ID 798
Summary
CVE-2022-27600 is an uncontrolled resource consumption vulnerability that puts several QNAP operating system versions at risk. This issue can be exploited by remote attackers to launch a denial-of-service (DoS) attack. Affected versions include QTS 5.0.1.2277 and earlier, QTS 4.5.4.2280 and earlier, QuTS hero h5.0.1.2277 and earlier, and QuTS hero h4.5.4.2374 and earlier for QTScloud. QNAP has released patches for these versions to address the vulnerability, which users are urged to install promptly to mitigate the risk of a potential attack.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.