4.8
CVSSv3

CVE-2019-7197

Published: 04/12/2019 Updated: 06/12/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

A stored cross-site scripting (XSS) vulnerability has been reported to affect multiple versions of QTS. If exploited, this vulnerability may allow an malicious user to inject and execute scripts on the administrator console. To fix this vulnerability, QNAP recommend updating QTS to the latest version.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qnap qts 4.2.6

qnap qts 4.3.3

qnap qts 4.3.4

qnap qts 4.3.6

qnap qts 4.4.1