First published: Wed Nov 22 2017(Updated: )
QNAP has already patched this vulnerability. This security concern allows a remote attacker to run arbitrary commands on the QNAP Video Station 5.1.3 (for QTS 4.3.3), 5.2.0 (for QTS 4.3.4), and earlier.
Credit: security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
QNAP Video Station | =5.1.3 | |
QNAP QTS | =4.3.3 | |
QNAP Video Station | =5.2.0 | |
QNAP QTS | =4.3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-13071 is a security vulnerability that allows a remote attacker to run arbitrary commands on the QNAP Video Station 5.1.3 (for QTS 4.3.3), 5.2.0 (for QTS 4.3.4), and earlier.
Yes, QNAP has already patched this vulnerability.
The severity of CVE-2017-13071 is critical with a CVSS score of 9.8.
QNAP Video Station 5.1.3 (for QTS 4.3.3), 5.2.0 (for QTS 4.3.4), and earlier versions are affected by CVE-2017-13071.
You can find more information about CVE-2017-13071 in the QNAP security advisory at https://www.qnap.com/zh-tw/security-advisory/nas-201711-21.