A cross-site scripting (XSS) vulnerability has been reported to affect Video Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: Video Station 5.7.0 ( 2023/07/27 ) and later
2023-10-13T20:15:10.300
2024-11-21T08:07:45.720
Modified
CVSSv3.1: 4.6 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | qnap | video_station | < 2023.07.27 | Yes |