CVE-2023-23365: Music Station
A path traversal vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow authenticated users to read the contents of unexpected files and expose sensitive data via a network.
We have already fixed the vulnerability in the following version: Music Station 5.3.22 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-23365?
CVE-2023-23365 is a path traversal vulnerability that affects Music Station and allows authenticated users to read the contents of unexpected files and expose sensitive data.
How does CVE-2023-23365 impact Music Station?
CVE-2023-23365 allows authenticated users to exploit a path traversal vulnerability in Music Station and gain unauthorized access to sensitive files.
Has CVE-2023-23365 been fixed?
Yes, CVE-2023-23365 has already been fixed in version 5.3.22 of Music Station.
How can I prevent exploitation of CVE-2023-23365?
To prevent exploitation of CVE-2023-23365, ensure that you are using version 5.3.22 or later of Music Station.
Where can I find more information about CVE-2023-23365?
More information about CVE-2023-23365 can be found in the QNAP Security Advisory QSA-23-28 at https://www.qnap.com/en/security-advisory/qsa-23-28.