CVE-2013-0142: QNAP NAS

Medium severity, CVSS 5.0. EPSS: 1.3% chance of exploitation in the next 30 days.

QNAP VioStor NVR devices with firmware 4.0.3, and the Surveillance Station Pro component in QNAP NAS, have a hardcoded guest account, which allows remote attackers to obtain web-server login access via unspecified vectors.

Affected products

  • QNAP NAS: affected versions not specified
  • QNAP Surveillance Station Pro: affected versions not specified
  • QNAP VioStor Network Video Recorder: version 4.0.3 only

Published 2013-06-07. Last modified 2026-06-16.