// For flags

CVE-2013-6276

 

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

QNAP F_VioCard 2312 and F_VioGate 2308 have hardcoded entries in authorized_keys files. NOTE: 1. All active models are not affected. The last affected model was EOL since 2010. 2. The legacy authorization mechanism is no longer adopted in all active models

QNAP F_VioCard 2312 y F_VioGate 2308, presentan entradas embebidas en los archivos authorized_keys. NOTA: 1. Todos los modelos activos no están afectados. El último modelo afectado fue EOL desde 2010. 2. El mecanismo de autorización heredado ya no se adopta en todos los modelos activos

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2013-10-24 CVE Reserved
  • 2014-07-05 CVE Published
  • 2024-07-01 EPSS Updated
  • 2024-08-06 CVE Updated
  • 2024-08-06 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-798: Use of Hard-coded Credentials
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Qnap
Search vendor "Qnap"
Viocard-30 Firmware
Search vendor "Qnap" for product "Viocard-30 Firmware"
2312_2.1.0
Search vendor "Qnap" for product "Viocard-30 Firmware" and version "2312_2.1.0"
-
Affected
in Qnap
Search vendor "Qnap"
Viocard-30
Search vendor "Qnap" for product "Viocard-30"
--
Safe
Qnap
Search vendor "Qnap"
Viocard-100 Firmware
Search vendor "Qnap" for product "Viocard-100 Firmware"
--
Affected
in Qnap
Search vendor "Qnap"
Viocard-100
Search vendor "Qnap" for product "Viocard-100"
--
Safe
Qnap
Search vendor "Qnap"
Viocard-300 Firmware
Search vendor "Qnap" for product "Viocard-300 Firmware"
rc_b3722
Search vendor "Qnap" for product "Viocard-300 Firmware" and version "rc_b3722"
-
Affected
in Qnap
Search vendor "Qnap"
Viocard-300
Search vendor "Qnap" for product "Viocard-300"
--
Safe
Qnap
Search vendor "Qnap"
Viocard-300 Firmware
Search vendor "Qnap" for product "Viocard-300 Firmware"
rs_b4631
Search vendor "Qnap" for product "Viocard-300 Firmware" and version "rs_b4631"
-
Affected
in Qnap
Search vendor "Qnap"
Viocard-300
Search vendor "Qnap" for product "Viocard-300"
--
Safe
Qnap
Search vendor "Qnap"
Viogate-340a Firmware
Search vendor "Qnap" for product "Viogate-340a Firmware"
--
Affected
in Qnap
Search vendor "Qnap"
Viogate-340a
Search vendor "Qnap" for product "Viogate-340a"
--
Safe
Qnap
Search vendor "Qnap"
Viogate-340 Firmware
Search vendor "Qnap" for product "Viogate-340 Firmware"
2308_2.1.0
Search vendor "Qnap" for product "Viogate-340 Firmware" and version "2308_2.1.0"
-
Affected
in Qnap
Search vendor "Qnap"
Viogate-340
Search vendor "Qnap" for product "Viogate-340"
--
Safe
* End Of Life in some or all products. Do not expect updates.