Описание
An OS command injection vulnerability has been reported to affect Container Station. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network.
We have already fixed the vulnerability in the following version: Container Station 2.6.7.44 and later
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.6.7.44 (исключая)
cpe:2.3:o:qnap:container_station:*:*:*:*:*:*:*:*
EPSS
Процентиль: 30%
0.0011
Низкий
6.6 Medium
CVSS3
7.2 High
CVSS3
Дефекты
CWE-78
CWE-78
Связанные уязвимости
CVSS3: 6.6
github
больше 2 лет назад
An OS command injection vulnerability has been reported to affect Container Station. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network. We have already fixed the vulnerability in the following version: Container Station 2.6.7.44 and later
EPSS
Процентиль: 30%
0.0011
Низкий
6.6 Medium
CVSS3
7.2 High
CVSS3
Дефекты
CWE-78
CWE-78