Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-crwj-f9hc-c6g4

Опубликовано: 06 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 7.3
CVSS3: 7.8

Описание

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspecified vectors.

We have already fixed the vulnerability in the following versions: QTS 5.1.8.2823 build 20240712 and later QuTS hero h5.1.8.2823 build 20240712 and later

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspecified vectors.

We have already fixed the vulnerability in the following versions: QTS 5.1.8.2823 build 20240712 and later QuTS hero h5.1.8.2823 build 20240712 and later

EPSS

Процентиль: 63%
0.00438
Низкий

7.3 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.8
nvd
больше 1 года назад

An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspecified vectors. We have already fixed the vulnerability in the following versions: QTS 5.1.8.2823 build 20240712 and later QuTS hero h5.1.8.2823 build 20240712 and later

EPSS

Процентиль: 63%
0.00438
Низкий

7.3 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-77