The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this cross-site request forgery (CSRF) vulnerability could allow attackers to force NAS users to execute unintentional actions through a web application. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.
2020-09-11T15:15:10.993
2024-11-21T03:58:52.110
Modified
CVSSv3.1: 2.0 (LOW)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9