QNAP QTS 4.2.6 build 20171026, QTS 4.3.3 build 20170727 and previous versions allows remote malicious users to obtain potentially sensitive information (firmware version and running services) via a request to sysinfoReq.cgi.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qnap qts 4.2.6 |
||
qnap qts 4.3.3 |