cbcvebase.
CVE-2018-0707
published 2018-07-17

CVE-2018-0707: Command injection vulnerability in change password of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to run…

high7.2CVSS 3.0
AVNACLPRHUINSUCHIHAH
EXPLOIT
Command injection vulnerability in change password of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to run arbitrary commands.

Affected

2 ranges
VendorProductVersion rangeFixed in
qnapq_center<= 1.7.1063
qnapq_center_virtual_appliance