CVE-2018-0718: Command Injection
Command injection vulnerability in Music Station 5.1.2 and earlier versions in QNAP QTS 4.3.3 and 4.3.4 could allow remote attackers to run arbitrary commands in the compromised application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-0718?
CVE-2018-0718 is a command injection vulnerability in Music Station 5.1.2 and earlier versions in QNAP QTS 4.3.3 and 4.3.4.
What is the severity of CVE-2018-0718?
CVE-2018-0718 has a severity level of critical with a CVSS score of 9.8.
How does CVE-2018-0718 affect Qnap Music Station?
CVE-2018-0718 affects Qnap Music Station version 5.1.2 and earlier, allowing remote attackers to run arbitrary commands in the compromised application.
Is QNAP QTS 4.3.3 vulnerable to CVE-2018-0718?
No, QNAP QTS 4.3.3 is not vulnerable to CVE-2018-0718.
Is QNAP QTS 4.3.4 vulnerable to CVE-2018-0718?
No, QNAP QTS 4.3.4 is not vulnerable to CVE-2018-0718.
How can I fix CVE-2018-0718?
To fix CVE-2018-0718, it is recommended to update Music Station to a version later than 5.1.2 and QNAP QTS to a version later than 4.3.4.