An out-of-bounds read vulnerability has been reported to affect certain QNAP switches running QSS. If exploited, this vulnerability allows attackers to read sensitive information on the system. This issue affects: QNAP Systems Inc. QSS versions prior to 1.0.2 build 20210122 on QSW-M2108-2C; versions prior to 1.0.2 build 20210122 on QSW-M2108-2S; versions prior to 1.0.2 build 20210122 on QSW-M2108R-2C.
2021-06-11T07:15:06.490
2024-11-21T06:00:13.787
Modified
CVSSv3.1: 3.1 (LOW)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | qnap | qss | < 1.0.2 | Yes |
Hardware | qnap | qsw-m2108-2c | - | No |
Hardware | qnap | qsw-m2108-2s | - | No |
Hardware | qnap | qsw-m2108r-2c | - | No |