CVE-2023-47565
08.12.2023, 16:15
An OS command injection vulnerability has been found to affect legacy QNAP VioStor NVR models running QVR Firmware 4.x. If exploited, the vulnerability could allow authenticated users to execute commands via a network. We have already fixed the vulnerability in the following versions: QVR Firmware 5.0.0and later
Vendor | Product | Version |
---|---|---|
qnap | qvr_firmware | 4.0.0 ≤ 𝑥 < 5.0.0 |
𝑥
= Vulnerable software versions