cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-47564,https://securityvulnerability.io/vulnerability/CVE-2023-47564,Qsync Central,"An issue with incorrect permission assignment in Qsync Central from QNAP exposes critical resources to potential read and modification by authenticated users over a network. This vulnerability underscores the importance of proper permission management to prevent unauthorized access to sensitive information. Mitigating this vulnerability requires version updates to ensure security patches are applied, specifically upgrading to Qsync Central 4.4.0.15 or later, or 4.3.0.11 or later.",QNAP,Qsync Central,8,HIGH,0.0005200000014156103,false,false,false,true,true,false,false,2024-02-02T16:05:54.662Z,0 CVE-2018-0716,https://securityvulnerability.io/vulnerability/CVE-2018-0716,,"Cross-site scripting vulnerability in QTS 4.2.6 build 20180711, QTS 4.3.3: Qsync Central 3.0.2, QTS 4.3.4: Qsync Central 3.0.3, QTS 4.3.5: Qsync Central 3.0.4 and earlier versions could allow remote attackers to inject Javascript code in the compromised application.",Qnap,Qsync Central,6.1,MEDIUM,0.0011599999852478504,false,false,false,false,,false,false,2018-11-30T14:00:00.000Z,0