Cross-site scripting (XSS) vulnerability in QNAP QTS 4.3.3 build 20180126, QTS 4.3.4 build 20180315, and their earlier versions could allow remote attackers to inject arbitrary web script or HTML.
2018-04-30T13:29:00.323
2024-11-21T03:38:47.837
Modified
CVSSv3.0: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | qnap | qts | 4.3.3.0514 | Yes |
Operating System | qnap | qts | 4.3.3.0546 | Yes |
Operating System | qnap | qts | 4.3.3.0570 | Yes |
Operating System | qnap | qts | 4.3.4.0516 | Yes |
Operating System | qnap | qts | 4.3.4.0526 | Yes |
Operating System | qnap | qts | 4.3.4.0551 | Yes |
Operating System | qnap | qts | 4.3.4.0557 | Yes |
Operating System | qnap | qts | 4.3.4.0561 | Yes |
Operating System | qnap | qts | 4.3.4.0569 | Yes |
Operating System | qnap | qts | 4.3.4.0593 | Yes |
Operating System | qnap | qts | 4.3.4.0597 | Yes |
Operating System | qnap | qts | 4.3.4.0604 | Yes |