Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-38646


An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow local authenticated attackers who have gained administrator access to read or modify the resource. We have already fixed the vulnerability in the following version: Notes Station 3 3.9.7 and later


Published

2024-11-22T16:15:25.257

Last Modified

2025-09-20T03:29:56.517

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.0 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-732

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application qnap notes_station_3 < 3.9.7 Yes

References