Nas4free is a niche network-attached storage operating system whose vulnerability exposure centers on a single product with a focused attack surface. The durable signal is code-injection weakness in the platform's administrative and system-management interfaces, reflecting the risks of dynamic code execution in storage appliance control planes. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nas4free over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-3631MEDIUM NAS4Free 9.1.0.1.804 and earlier allows remote authenticated users to execute arbitrary PHP code via a request to exec.php, aka the "Advanced | Execute Command" feature. NOTE: thi | Nov 2, 2013 | 6.0 | 38 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nas4free.
Media articles that mention a CVE ID that affects a product developed by Nas4free — matched by CVE ID, not by vendor name.