Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-47564


An incorrect permission assignment for critical resource vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow authenticated users to read or modify the resource via a network. We have already fixed the vulnerability in the following versions: Qsync Central 4.4.0.15 ( 2024/01/04 ) and later Qsync Central 4.3.0.11 ( 2024/01/11 ) and later


Published

2024-02-02T16:15:52.280

Last Modified

2024-11-21T08:30:27.967

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.0 (HIGH)

Weaknesses
  • Type: Primary
    CWE-732

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application qnap qsync_central < 4.3.0.11 Yes
Application qnap qsync_central < 4.4.0.15 Yes

References