First published: Fri Oct 06 2023(Updated: )
A path traversal vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow authenticated users to read the contents of unexpected files and expose sensitive data via a network. We have already fixed the vulnerability in the following version: Music Station 5.3.22 and later
Credit: security@qnapsecurity.com.tw security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Qnap Music Station | >=5.3.0<5.3.22 |
We have already fixed the vulnerability in the following version: Music Station 5.3.22 and later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-23366.
The Music Station software version 5.3.0 to 5.3.22 is affected by the vulnerability.
The severity of CVE-2023-23366 is high, with a severity value of 6.5.
The vulnerability can be exploited by authenticated users to read the contents of unexpected files and expose sensitive data via a network.
Yes, the vulnerability has been fixed in Music Station version 5.3.22.