Описание
This command injection vulnerability in File Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:o:qnap:qts:4.2.6:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.3.0868:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.3.0998:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.4.0899:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.4.1029:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0895:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0907:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0923:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0944:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0959:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0979:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.0993:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.1013:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.3.6.1033:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.0948:beta:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.0949:beta:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.0978:beta_2:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.0998:beta_3:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.0999:beta_3:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.1031:beta_4:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.1033:beta_4:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.1064:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.1081:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.1086:*:*:*:*:*:*:*
cpe:2.3:o:qnap:qts:4.4.1.1101:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01203
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-77
Связанные уязвимости
github
около 3 лет назад
This command injection vulnerability in File Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.
EPSS
Процентиль: 78%
0.01203
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-77