First published: Thu Mar 08 2018(Updated: )
QNAP NAS application Media Streaming add-on version 421.1.0.2, 430.1.2.0, and earlier does not utilize CSRF protections.
Credit: security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Qnap Media Streaming Add-on | <=430.1.2.0 | |
QNAP QTS | =4.3.3 | |
Qnap Media Streaming Add-on | <=421.1.0.2 | |
QNAP QTS | <=4.2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2017-7641.
The severity of CVE-2017-7641 is high.
QNAP NAS application Media Streaming add-on versions 421.1.0.2, 430.1.2.0, and earlier are affected by CVE-2017-7641.
No, QNAP QTS version 4.3.3 and earlier are not vulnerable to CVE-2017-7641.
Apply the latest patch or upgrade to a non-vulnerable version of QNAP NAS application Media Streaming add-on.