Cross-site scripting (XSS) vulnerability in the share link function of File Station of QNAP 4.2.6 build 20171026, QTS 4.3.3 build 20170727 and earlier allows remote attackers to inject arbitrary web script or HTML.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: qnap

Published: 2018-03-27T00:00:00

Updated: 2018-03-27T19:57:01

Reserved: 2017-04-10T00:00:00


Link: CVE-2017-7631

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-03-27T21:29:00.500

Modified: 2018-04-18T15:36:39.703


Link: CVE-2017-7631

JSON object: View

cve-icon Redhat Information

No data.

CWE