CVE-2017-7633: Infoleak
Published Mar 5, 2018
·Updated
QNAP Qfinder Pro 6.1.0.0317 and earlier may expose sensitive information contained in NAS devices. If exploited, this may allow attackers to further compromise the device.
Affected Software
1 affected component
QNAP Qfinder Pro<=6.1.0.0317
Event History
Mar 5, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-7633?
CVE-2017-7633 has a medium severity rating as it exposes sensitive information that may lead to further compromise of QNAP NAS devices.
2
How do I fix CVE-2017-7633?
To fix CVE-2017-7633, upgrade QNAP Qfinder Pro to version 6.1.0.0318 or later to mitigate the vulnerability.
3
What types of devices are affected by CVE-2017-7633?
CVE-2017-7633 affects QNAP Qfinder Pro software versions up to and including 6.1.0.0317.
4
Can CVE-2017-7633 be exploited remotely?
Yes, CVE-2017-7633 can potentially be exploited remotely due to the exposure of sensitive information.
5
What are the consequences of exploiting CVE-2017-7633?
Exploitation of CVE-2017-7633 could allow attackers to gain unauthorized access to sensitive information on the NAS devices.