Researchers call out QNAP for dragging its heels on patch development
ID: c80e0881-191d-54b3-9f80-d0d6a45ce771
STIX ID: report--c80e0881-191d-54b3-9f80-d0d6a45ce771
Feed Name: The Register (Security)
Threat Score
Researchers at watchTowr disclosed 15 vulnerabilities in QNAP's NAS operating systems (QTS, QuTSCloud, QTS hero), only four of which have been patched; several validated CVEs remain unpatched and a critical unauthenticated stack overflow (CVE-2024-27130) enabling remote code execution has PoC published, while QNAP's slow patching and prior ransomware history increase risk to users.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
