Back

HIGH

Hard-coded Password Vulnerability in QES

Published Dec 24, 2020

Description

A hard-coded password vulnerability has been reported to affect earlier versions of QES. If exploited, this vulnerability could allow attackers to log in with a hard-coded password. QNAP has already fixed the issue in QES 2.1.1 Build 20200515 and later.

Affected products

Remediation

Vendor solution

QNAP has already fixed the issue in QES 2.1.1 Build 20200515 and later.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner qnap
Published Dec 24, 2020
Updated Sep 17, 2024
Reserved Dec 9, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner qnap
Published Dec 24, 2020
Updated Sep 17, 2024
Exploited since n/a
EUVD-2020-22292