Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-27592

Опубликовано: 06 сент. 2024
Источник: nvd
CVSS3: 6.7
EPSS Низкий

Описание

An unquoted search path or element vulnerability has been reported to affect QVR Smart Client. If exploited, the vulnerability could allow local authenticated administrators to execute unauthorized code or commands via unspecified vectors.

We have already fixed the vulnerability in the following version: Windows 10 SP1, Windows 11, Mac OS, and Mac M1: QVR Smart Client 2.4.0.0570 and later

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qnap:qvr_smart_client:*:*:*:*:*:*:*:*
Версия от 2.4.0 (включая) до 2.4.0.0570 (исключая)

EPSS

Процентиль: 16%
0.00051
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-428

Связанные уязвимости

CVSS3: 6.7
github
больше 1 года назад

An unquoted search path or element vulnerability has been reported to affect QVR Smart Client. If exploited, the vulnerability could allow local authenticated administrators to execute unauthorized code or commands via unspecified vectors. We have already fixed the vulnerability in the following version: Windows 10 SP1, Windows 11, Mac OS, and Mac M1: QVR Smart Client 2.4.0.0570 and later

EPSS

Процентиль: 16%
0.00051
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-428