CVE-2024-53696
Published: Mar 7, 2025
Modified: Mar 7, 2025
Description
A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read application data. We have already fixed the vulnerability in the following versions: QuLog Center 1.7.0.829 ( 2024/10/01 ) and later QuLog Center 1.8.0.888 ( 2024/10/15 ) and later QTS 4.5.4.2957 build 20241119 and later QuTS hero h4.5.4.2956 build 20241119 and later
| Vendor | Product | Versions |
|---|---|---|
QNAP Systems Inc. | QuLog Center | affected 1.7.x.x - < 1.7.0.829 ( 2024/10/01 )affected 1.8.x.x - < 1.8.0.888 ( 2024/10/15 ) |
QNAP Systems Inc. | QTS | affected 4.5.x - < 4.5.4.2957 build 20241119 |
QNAP Systems Inc. | QuTS hero | affected h4.5.x - < h4.5.4.2956 build 20241119 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now