A path traversal vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow authenticated users to read the contents of unexpected files and expose sensitive data via a network.
We have already fixed the vulnerability in the following version:
Music Station 5.3.22 and later
References
Link | Resource |
---|---|
https://www.qnap.com/en/security-advisory/qsa-23-28 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: qnap
Published: 2023-10-06T16:33:40.264Z
Updated: 2023-10-06T16:33:40.264Z
Reserved: 2023-01-11T20:15:53.085Z
Link: CVE-2023-23365
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-10-06T17:15:11.737
Modified: 2023-10-10T19:35:30.007
Link: CVE-2023-23365
JSON object: View
Redhat Information
No data.