Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-2507

Опубликовано: 03 фев. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*
Версия до 3.0.3 (исключая)

EPSS

Процентиль: 89%
0.04621
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-77
CWE-78

Связанные уязвимости

github
больше 3 лет назад

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this improper access control vulnerability could allow attackers to obtain control of a QNAP device. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.

EPSS

Процентиль: 89%
0.04621
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-77
CWE-78