We have already fixed the vulnerability in the following versions:
QVPN Windows 2.0.0.1316 and later
QVPN Windows 2.0.0.1310 and later
No analysis available yet.
Vendor Solution
We have already fixed the vulnerability in the following versions: QVPN Windows 2.0.0.1316 and later QVPN Windows 2.0.0.1310 and later
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32096 | An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers who have gained user access to execute unauthorized code or commands. We have already fixed the vulnerability in the following versions: QVPN Windows 2.0.0.1316 and later QVPN Windows 2.0.0.1310 and later |
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-23-04 |
|
Mon, 08 Dec 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qnap
Qnap qvpn |
|
| CPEs | cpe:2.3:a:qnap:qvpn:*:*:*:*:*:windows:*:* | |
| Vendors & Products |
Qnap
Qnap qvpn |
Fri, 20 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Dec 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers who have gained user access to execute unauthorized code or commands. We have already fixed the vulnerability in the following versions: QVPN Windows 2.0.0.1316 and later QVPN Windows 2.0.0.1310 and later | |
| Title | QVPN Device Client | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2024-12-20T17:41:46.284Z
Reserved: 2022-03-21T22:02:33.326Z
Link: CVE-2022-27595
Updated: 2024-12-20T16:59:40.577Z
Status : Analyzed
Published: 2024-12-19T02:15:21.300
Modified: 2025-12-08T18:48:43.570
Link: CVE-2022-27595
No data.
OpenCVE Enrichment
No data.
EUVD