qsa-2024-21

CRITICAL CVSS 9.8 csaf_qnap
Description

A command injection vulnerability in QNAP QTS allows remote attackers to execute commands.

Timeline
Published
2024-03-08 10:00 UTC
Last Modified
2024-03-15
CVSS Details

CVSS details not available.

Affected Products

No product information available.

CVSS metrics
Version Base Severity Vector Exploitability Impact Source
3.1 9.8 CRITICAL
References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cvss": 9.8,
  "datePublished": "2024-03-08T10:00:00Z",
  "dateUpdated": "2024-03-15T18:00:00Z",
  "description": "A command injection vulnerability in QNAP QTS allows remote attackers to execute commands.",
  "id": "QSA-2024-21",
  "metrics": {
    "cvssMetricV31": [
      {
        "cvssData": {
          "baseScore": 9.8,
          "baseSeverity": "CRITICAL",
          "version": "3.1"
        }
      }
    ]
  },
  "severity": "CRITICAL",
  "source": "csaf_qnap",
  "title": "QNAP: QTS Command Injection"
}
View JSON API Download JSON