CVE-2021-34358: CSRF Vulnerability in QmailAgent
Published Nov 20, 2021
·Updated
We have already fixed this vulnerability in the following versions of QmailAgent: QmailAgent 3.0.2 ( 2021/08/25 ) and later
Affected Software
2 affected components
QNAP QmailAgent<3.0.2
QNAP NAS
Remediation
Information
We have already fixed this vulnerability in the following versions of QmailAgent:
QmailAgent 3.0.2 ( 2021/08/25 ) and later
Event History
Nov 20, 2021
CVE Published
via MITRE·01:05 AM
Data Sourced
via MITRE·01:05 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
Has QmailAgent fixed CVE-2021-34358?
Yes, QmailAgent has fixed CVE-2021-34358 in version 3.0.2 (released on 2021/08/25) and later.
2
What versions of QmailAgent are affected by CVE-2021-34358?
QmailAgent versions up to 3.0.2 are affected by CVE-2021-34358.
3
What is the severity of CVE-2021-34358?
CVE-2021-34358 has a severity rating of 8.8 (high).
4
How can I fix CVE-2021-34358?
To fix CVE-2021-34358, upgrade QmailAgent to version 3.0.2 or later.
5
Where can I find more information about CVE-2021-34358?
You can find more information about CVE-2021-34358 at the following reference: [Qnap Security Advisory QSA-21-49](https://www.qnap.com/en/security-advisory/qsa-21-49).