This cross-site scripting (XSS) vulnerability in Video Station allows remote attackers to inject and execute scripts on the administrator’s management console. To fix this vulnerability, QNAP recommend updating Video Station to their latest versions.
2019-12-05T17:15:12.810
2024-11-21T04:47:44.253
Modified
CVSSv3.1: 4.8 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | qnap | video_station | < 5.4.3 | Yes |
| Operating System | qnap | qts | 4.4.1 | No |
| Application | qnap | video_station | < 5.3.10 | Yes |
| Operating System | qnap | qts | ≤ 4.4.0 | No |