This command injection vulnerability in QTS allows attackers to run arbitrary commands in the compromised application. QNAP have already fixed the issue in QTS 4.2.6 build 20170517, QTS 4.3.3.0174 build 20170503 and later versions.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2017-06-15T20:00:00
Updated: 2020-09-11T14:16:19
Reserved: 2017-04-14T00:00:00
Link: CVE-2017-7876
JSON object: View
NVD Information
Status : Modified
Published: 2017-06-15T20:29:00.207
Modified: 2020-09-11T15:15:10.680
Link: CVE-2017-7876
JSON object: View
Redhat Information
No data.
CWE