📦 Tos

by Terra Master

🔍 What is Tos?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-45837

CRITICAL CVSS 9.8 Apr 25, 2022

This vulnerability allows remote attackers to execute arbitrary commands with root privileges on affected TerraMaster NAS devices. Attackers can exploit this by sending specially crafted input to the ...

CVE-2021-45840

CRITICAL CVSS 9.8 Apr 25, 2022

This vulnerability allows unauthenticated attackers to execute arbitrary commands with root privileges on Terramaster NAS devices by sending specially crafted input to a specific PHP endpoint. It affe...

CVE-2020-15568

CRITICAL CVSS 9.8 Jan 30, 2021

CVE-2020-15568 is a critical remote code execution vulnerability in TerraMaster TOS that allows attackers to execute arbitrary commands as root through improper parameter validation in the exportUser....

CVE-2020-28187

CRITICAL CVSS 9.8 Dec 24, 2020

CVE-2020-28187 is a critical directory traversal vulnerability in TerraMaster TOS that allows authenticated attackers to read, edit, or delete any file on the system. This affects TerraMaster NAS devi...

CVE-2021-45842

HIGH CVSS 7.5 Apr 25, 2022

This vulnerability in Terramaster NAS devices allows unauthenticated attackers to retrieve sensitive information including the first administrator's password hash, MAC address, and internal IP address...