CVE-2019-7184: XSS
This cross-site scripting (XSS) vulnerability in Video Station allows remote attackers to inject and execute scripts on the administrator’s management console. To fix this vulnerability, QNAP recommend updating Video Station to their latest versions.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-7184?
CVE-2019-7184 is a cross-site scripting (XSS) vulnerability in Video Station that allows remote attackers to inject and execute scripts on the administrator’s management console.
How can remote attackers exploit CVE-2019-7184?
Remote attackers can exploit CVE-2019-7184 by injecting and executing scripts on the administrator's management console of Video Station.
What is the severity of CVE-2019-7184?
The severity of CVE-2019-7184 is medium with a CVSS score of 4.8.
How can I fix CVE-2019-7184?
To fix CVE-2019-7184, QNAP recommends updating Video Station to the latest version.
Where can I find more information about CVE-2019-7184?
You can find more information about CVE-2019-7184 at this link: https://www.qnap.com/zh-tw/security-advisory/nas-201911-27.