CVE-2017-7637: OS Command Injection
QNAP NAS application Proxy Server through version 1.2.0 allows remote attackers to run arbitrary OS commands against the system with root privileges.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-7637?
CVE-2017-7637 is a vulnerability in the QNAP NAS application Proxy Server, allowing remote attackers to run arbitrary OS commands with root privileges.
What is the severity of CVE-2017-7637?
CVE-2017-7637 has a severity level of critical, with a severity value of 9.8.
How does CVE-2017-7637 affect QNAP NAS Proxy Server?
CVE-2017-7637 affects QNAP NAS Proxy Server versions up to 1.3.0, allowing remote attackers to run arbitrary OS commands with root privileges.
How can I fix CVE-2017-7637?
To fix CVE-2017-7637, update QNAP NAS Proxy Server to version 1.3.0 or later.
Where can I find more information about CVE-2017-7637?
You can find more information about CVE-2017-7637 on the following links: [SecurityTracker](http://www.securitytracker.com/id/1041025) and [QNAP Security Advisory](https://www.qnap.com/en/security-advisory/nas-201806-01).