This cross-site scripting vulnerability in Music Station allows remote attackers to inject malicious code. QANP have already fixed this vulnerability in the following versions of Music Station. QuTS hero h4.5.1: Music Station 5.3.13 and later QTS 4.5.1: Music Station 5.3.12 and later QTS 4.4.3: Music Station 5.3.12 and later
2020-12-10T04:15:11.783
2024-11-21T05:25:20.257
Modified
CVSSv3.1: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | qnap | music_station | < 5.3.13 | Yes |
Operating System | qnap | quts_hero | h4.5.1 | No |
Application | qnap | music_station | < 5.3.12 | Yes |
Operating System | qnap | qts | 4.5.1 | No |
Application | qnap | music_station | < 5.3.12 | Yes |
Application | qnap | qts | 4.4.3 | No |