CVE-2023-50360
published 2024-09-06CVE-2023-50360: A SQL injection vulnerability has been reported to affect Video Station. If exploited, the vulnerability could allow authenticated users to inject malicious…
high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
A SQL injection vulnerability has been reported to affect Video Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.
We have already fixed the vulnerability in the following version:
Video Station 5.8.1 ( 2024/02/26 ) and later
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| qnap | video_station | >= 5.0.0 < 5.8.2 | 5.8.2 |
| qnap_systems_inc | video_station | >= 5.8.x < 5.8.1 ( 2024/02/26 ) | 5.8.1 ( 2024/02/26 ) |