vulnerability
QNAP QTS: CVE-2021-34347: Exposure of Sensitive Information in QTS, QuTS hero, and QuTScloud
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 8 | (AV:N/AC:L/Au:N/C:C/I:N/A:N) | Dec 30, 2021 | Aug 4, 2025 | Oct 16, 2025 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:N)
Published
Dec 30, 2021
Added
Aug 4, 2025
Modified
Oct 16, 2025
Description
A vulnerability involving exposure of sensitive information has been reported to affect QNAP NAS running QTS, QuTS hero, and QuTScloud. If exploited, this vulnerability allows attackers to compromise the security of the system. We have already fixed this vulnerability in the following versions of QTS, QuTS hero, and QuTScloud: QTS 4.5.4.1787 build 20210910 and later QuTS hero h4.5.4.1771 build 20210825 and later QuTScloud c4.5.7.1864 and later
Solution
qnap-qts-upgrade-latest
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.