Cross-site scripting vulnerability in QTS 4.2.6 build 20180711, QTS 4.3.3: Qsync Central 3.0.2, QTS 4.3.4: Qsync Central 3.0.3, QTS 4.3.5: Qsync Central 3.0.4 and earlier versions could allow remote attackers to inject Javascript code in the compromised application.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.qnap.com/zh-tw/security-advisory/nas-201811-29 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: qnap
Published: 2018-11-30T14:00:00
Updated: 2024-08-05T03:35:49.284Z
Reserved: 2017-11-28T00:00:00
Link: CVE-2018-0716
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-11-30T14:29:00.253
Modified: 2024-11-21T03:38:48.323
Link: CVE-2018-0716
Redhat
No data.