CVE Database
/

CVE-2024-53696

Back to search

CVE-2024-53696

Published: Mar 7, 2025

Modified: Mar 7, 2025

PUBLISHED

Description

A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read application data. We have already fixed the vulnerability in the following versions: QuLog Center 1.7.0.829 ( 2024/10/01 ) and later QuLog Center 1.8.0.888 ( 2024/10/15 ) and later QTS 4.5.4.2957 build 20241119 and later QuTS hero h4.5.4.2956 build 20241119 and later

VendorProductVersions

QNAP Systems Inc.

QuLog Center

affected
1.7.x.x - < 1.7.0.829 ( 2024/10/01 )
affected
1.8.x.x - < 1.8.0.888 ( 2024/10/15 )

QNAP Systems Inc.

QTS

affected
4.5.x - < 4.5.4.2957 build 20241119

QNAP Systems Inc.

QuTS hero

affected
h4.5.x - < h4.5.4.2956 build 20241119

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now