Rewterz
Rewterz Threat Alert – Blind Eagle APT aka APT-C-36 – Active IOCs
January 31, 2023
Rewterz
Rewterz Threat Alert – Amadey Botnet – Active IOCs
January 31, 2023

Rewterz Threat Advisory – CVE-2022-27596 – QNAP running QTS and running QTS Vulnerability

Severity

High

Analysis Summary

CVE-2022-27596

QNAP running QTS and running QTS could allow a remote attacker to execute arbitrary code on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to inject and execute arbitrary code on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2023-20854

Affected Vendors

QNAP

Affected Products

  • QNAP QTS 5.0.1
  • QNAP QuTS hero h5.0.1

Remediation

Refer to QNAP Security Advisory for patch, upgrade or suggested workaround information.

QNAP Security Advisory