U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2023-23372

Change History

Initial Analysis by NIST 12/12/2023 2:50:04 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:qnap:qts:4.5.4.1715:build_20210630:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.1723:build_20210708:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.1741:build_20210726:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.1787:build_20210910:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.1800:build_20210923:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.1892:build_20211223:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.1931:build_20220128:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.2012:build_20220419:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.2117:build_20220802:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.2280:build_20230112:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:4.5.4.2374:build_20230416:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:qnap:qts:5.0.1.2034:build_20220515:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2079:build_20220629:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2131:build_20220820:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2137:build_20220826:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2145:build_20220903:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2173:build_20221001:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2194:build_20221022:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2234:build_20221201:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2248:build_20221215:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2277:build_20230112:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2346:build_20230322:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.0.1.2376:build_20230421:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:qnap:qts:5.1.0.2348:build_20230325:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.1.0.2399:build_20230515:*:*:*:*:*:*
     *cpe:2.3:o:qnap:qts:5.1.0.2418:build_20230603:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1771:build_20210825:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1800:build_20210923:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1813:build_20211006:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1848:build_20211109:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1892:build_20211223:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1951:build_20220218:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1971:build_20220310:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.1991:build_20220330:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.2052:build_20220530:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.2138:build_20220824:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.2217:build_20221111:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.2272:build_20230105:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h4.5.4.2374:build_20230417:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2045:build_20220526:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2192:build_20221020:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2248:build_20221215:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2269:build_20230104:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2277:build_20230112:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2348:build_20230324:*:*:*:*:*:*
     *cpe:2.3:o:qnap:quts_hero:h5.0.1.2376:build_20230421:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:qnap:quts_hero:h5.1.0.2409:build_20230525:*:*:*:*:*:*
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Added CWE

								
							
							
						
NIST CWE-79
Changed Reference Type
https://www.qnap.com/en/security-advisory/qsa-23-40 No Types Assigned
https://www.qnap.com/en/security-advisory/qsa-23-40 Vendor Advisory