Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-22898

Опубликовано: 20 мар. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers can then exploit the vulnerability to gain access to the system.

We have already fixed the vulnerability in the following version: QVR Pro 2.7.4.14 and later

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qnap:qvr_pro:*:*:*:*:*:*:*:*
Версия от 2.7.1.1259 (включая) до 2.7.4.1485 (исключая)

EPSS

Процентиль: 48%
0.00683
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 9.8
github
4 месяца назад

A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers can then exploit the vulnerability to gain access to the system. We have already fixed the vulnerability in the following version: QVR Pro 2.7.4.14 and later

EPSS

Процентиль: 48%
0.00683
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-306