← Back

CVE-2017-17029

nvd nist
Published: Dec 21, 2017Modified: May 13, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

A buffer overflow vulnerability in login function in QNAP QTS version 4.2.6 build 20171026, 4.3.3.0378 build 20171117, 4.3.4.0387 (Beta 2) build 20171116 and earlier could allow remote attackers to execute arbitrary code on NAS devices.

Affected (6)

Products: Qnap: Qts
1 product
Qts
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Qnap
Up to 4.3.3.0378
Version 4.3.4.0358 beta1
Version 4.3.4.0370 beta1
Version 4.3.4.0372 beta1
Version 4.3.4.0374 beta1
Version 4.3.4.0387 beta2

References (4)

Source: security@qnapsecurity.com.tw
Third Party AdvisoryVDB Entry
Source: security@qnapsecurity.com.tw
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory

Timeline

No history available yet.