First published: Fri Oct 13 2023(Updated: )
An OS command injection vulnerability has been reported to affect Container Station. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network. We have already fixed the vulnerability in the following version: Container Station 2.6.7.44 and later
Credit: security@qnapsecurity.com.tw security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Qnap Container Station | <2.6.7.44 |
We have already fixed the vulnerability in the following version: Container Station 2.6.7.44 and later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-32976 is an OS command injection vulnerability that affects Container Station.
If exploited, CVE-2023-32976 could allow authenticated administrators to execute commands via a network.
Container Station 2.6.7.44 and later versions have fixed CVE-2023-32976.
CVE-2023-32976 has a severity rating of 7.2 (High).
You can find more information about CVE-2023-32976 in the QNAP security advisory: [https://www.qnap.com/en/security-advisory/qsa-23-44](https://www.qnap.com/en/security-advisory/qsa-23-44).