VYPR
High severity7.5NVD Advisory· Published Nov 28, 2018· Updated Jun 17, 2026

CVE-2018-14748

CVE-2018-14748

Description

Improper Authorization vulnerability in QTS 4.3.5 build 20181013, QTS 4.3.4 build 20181008, QTS 4.3.3 build 20180829, QTS 4.2.6 build 20180829 and earlier versions could allow remote attackers to power off the NAS.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Qnap/Qts5 versions
    cpe:2.3:o:qnap:qts:4.2.6:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:qnap:qts:4.2.6:*:*:*:*:*:*:*
    • cpe:2.3:o:qnap:qts:4.3.3:*:*:*:*:*:*:*
    • cpe:2.3:o:qnap:qts:4.3.4:*:*:*:*:*:*:*
    • cpe:2.3:o:qnap:qts:4.3.5:*:*:*:*:*:*:*
    • (no CPE)
  • QTS/QTSllm-fuzzy
  • QNAP/QNAP QTSv5
    Range: QTS 4.3.5 build 20181013, QTS 4.3.4 build 20181008, QTS 4.3.3 build 20180829, QTS 4.2.6 build 20180829 and earlier versions

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.