CVE-2018-0722: Path Traversal
Path Traversal vulnerability in Photo Station versions: 5.7.2 and earlier in QTS 4.3.4, 5.4.4 and earlier in QTS 4.3.3, 5.2.8 and earlier in QTS 4.2.6 could allow remote attackers to access sensitive information on the device.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-0722?
CVE-2018-0722 is a path traversal vulnerability in Photo Station versions 5.7.2 and earlier in QTS 4.3.4, 5.4.4 and earlier in QTS 4.3.3, and 5.2.8 and earlier in QTS 4.2.6 that could allow remote attackers to access sensitive information on the device.
Which software versions are affected by CVE-2018-0722?
CVE-2018-0722 affects QNAP Photo Station versions 5.7.2 and earlier, as well as QTS versions 4.3.4, 4.3.3, and 4.2.6.
How severe is CVE-2018-0722?
CVE-2018-0722 has a severity rating of 7.5 (High).
How can remote attackers exploit CVE-2018-0722?
Remote attackers can exploit CVE-2018-0722 by leveraging the path traversal vulnerability to access sensitive information on the device.
Where can I find more information about CVE-2018-0722?
You can find more information about CVE-2018-0722 on the QNAP Security Advisory page: https://www.qnap.com/zh-tw/security-advisory/nas-201901-14