Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-38643


A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote attackers to gain access to and execute certain functions. We have already fixed the vulnerability in the following version: Notes Station 3 3.9.7 and later


Published

2024-11-22T16:15:24.873

Last Modified

2025-09-20T03:32:31.870

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-306

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application qnap notes_station_3 < 3.9.7 Yes

References