Описание
An improper authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they can then exploit the vulnerability to compromise the security of the system.
We have already fixed the vulnerability in the following version: QuRouter 2.5.0.140 and later
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:o:qnap:qurouter:2.4.0.190:build_20240522:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.1.172:build_20240606:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.1.634:build_20240710:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.2.317:build_20240903:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.2.538:build_20240923:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.3.103:build_20241011:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.4.106:build_20241017:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.5.032:build_20241029:*:*:*:*:*:*
cpe:2.3:o:qnap:qurouter:2.4.6.028:build_20250207:*:*:*:*:*:*
EPSS
Процентиль: 8%
0.00029
Низкий
7.8 High
CVSS3
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 7.8
github
8 месяцев назад
An improper authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerability in the following version: QuRouter 2.5.0.140 and later
EPSS
Процентиль: 8%
0.00029
Низкий
7.8 High
CVSS3
Дефекты
CWE-287