← Back

CVE-2018-0718

nvd nist
Published: Sep 14, 2018Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Command injection vulnerability in Music Station 5.1.2 and earlier versions in QNAP QTS 4.3.3 and 4.3.4 could allow remote attackers to run arbitrary commands in the compromised application.

Affected (1)

Products: Qnap: Music Station
1 product
Music Station
Configuration A
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Up to 5.1.2
Running on/withPlatform Versions
Qnap
Qts
Version 4.3.3
Qnap
Qts
Version 4.3.4

References (2)

Source: security@qnapsecurity.com.tw
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.