383
VMScore

CVE-2018-0719

Published: 27/11/2018 Updated: 16/01/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site Scripting (XSS) vulnerability in NAS devices of QNAP Systems Inc. QTS allows malicious users to inject javascript. This issue affects: QNAP Systems Inc. QTS version 4.2.6 and prior versions on build 20180711; version 4.3.3 and prior versions on build 20180725; version 4.3.4 and prior versions on build 20180710.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qnap qts 4.2.6

qnap qts 4.3.4

qnap qts 4.3.3