Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7r29-w7vh-5p6q

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this improper access control vulnerability could allow attackers to obtain control of a QNAP device. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this improper access control vulnerability could allow attackers to obtain control of a QNAP device. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.

EPSS

Процентиль: 89%
0.04621
Низкий

Дефекты

CWE-78
CWE-863

Связанные уязвимости

CVSS3: 9.8
nvd
около 5 лет назад

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.

EPSS

Процентиль: 89%
0.04621
Низкий

Дефекты

CWE-78
CWE-863