[重要安全性通知] 发现假冒 Qfinder Pro 网站。了解详情 >

安全ID : QSA-26-11

Multiple Vulnerabilities in QuNetSwitch (ADRA NDR)


  • 发布日期 : March 21, 2026

  • 通用漏洞披露 : CVE-2026-22897 | CVE-2026-22900 | CVE-2026-22901 | CVE-2026-22902

  • 受影响产品: QuNetSwitch 2.0.x

严重程度

严重

状态

已解决


Summary

Multiple vulnerabilities have been reported to affect QuNetSwitch.

  • CVE-2026-22897: Remote attackers can exploit the command injection vulnerability to execute arbitrary commands.
  • CVE-2026-22900: Remote attackers can exploit the use of hard-coded credentials vulnerability to gain unauthorized access.
  • CVE-2026-22901: If a remote attacker gains a user account, they can then exploit the command injection vulnerability to execute arbitrary commands.
  • CVE-2026-22902: If a local attacker gains an administrator account, they can then exploit the command injection vulnerability to execute arbitrary commands.

We have already fixed these vulnerabilities in the following versions:

Affected Product Fixed Version
QuNetSwitch 2.0.x QuNetSwitch 2.0.4.0415 and later
QuNetSwitch 2.0.x QuNetSwitch 2.0.5.0906 and later

Recommendation

For optimal security and performance, we recommend regularly updating QuNetSwitch to the latest version, ensuring you receive all vulnerability fixes and new features. You can view the product support status to check for the latest updates available for your model.

Updating QuNetSwitch

  1. Log on to QTS or QuTS hero as an administrator.
  2. Open App Center and then click .
    A search box appears.
  3. Type "QuNetSwitch" and then press ENTER.
    QuNetSwitch appears in the search results.
  4. Click Update.
    A confirmation message appears.
    Note: The Update button is not available if your QuNetSwitch is already up to date.
  5. Click OK.
    The system updates the application.

  

Updating ADRA NDR

  1. Log in to ADRA NDR.
  2. Go to Firmware.
  3. Select Update now.
  4. Select Latest.
  5. Click Apply.
    A confirmation message appears.
  6. Click Apply.
    ADRA NDR downloads and installs the latest firmware.

Tip: You can also download the latest firmware for your specific device from Download Center, and then perform a manual update in ADRA NDR by going to Firmware > Manual Update.

  

附件

致谢: YingMuo

修订历史:
V1.0 (March 21, 2026) - Published

选择规格

      显示更多 隐藏更多
      open menu
      back to top