Cross-site scripting (XSS) vulnerability in QNAP NAS application Photo Station versions 5.2.7, 5.4.3, and their earlier versions could allow remote attackers to inject arbitrary web script or HTML.
2018-04-23T14:29:01.103
2024-11-21T03:10:54.560
Modified
CVSSv3.0: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | qnap | photo_station | ≤ 5.2.7 | Yes |
Application | qnap | photo_station | ≤ 5.4.3 | Yes |