Описание
A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers can then exploit the vulnerability to gain access to the system.
We have already fixed the vulnerability in the following version: QVR Pro 2.7.4.14 and later
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 2.7.1.1259 (включая) до 2.7.4.1485 (исключая)
cpe:2.3:a:qnap:qvr_pro:*:*:*:*:*:*:*:*
EPSS
Процентиль: 48%
0.00683
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-306
Связанные уязвимости
CVSS3: 9.8
github
4 месяца назад
A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers can then exploit the vulnerability to gain access to the system. We have already fixed the vulnerability in the following version: QVR Pro 2.7.4.14 and later
EPSS
Процентиль: 48%
0.00683
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-306