CVE-2018-0718
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
Command injection vulnerability in Music Station 5.1.2 and earlier versions in QNAP QTS 4.3.3 and 4.3.4 could allow remote attackers to run arbitrary commands in the compromised application.
Affected (1)
Products: Qnap: Music Station
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 5.1.2 |
| Running on/with | Platform Versions |
|---|---|
Qnap Qts | Version 4.3.3 |
References (2)
Source: security@qnapsecurity.com.tw
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.