First published: Fri Nov 22 2024(Updated: )
A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote attackers to gain access to and execute certain functions. We have already fixed the vulnerability in the following version: Notes Station 3 3.9.7 and later
Credit: security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
<3.9.7 |
We have already fixed the vulnerability in the following version: Notes Station 3 3.9.7 and later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38643 is classified as a critical vulnerability due to a missing authentication for critical functions.
To fix CVE-2024-38643, upgrade Notes Station 3 to version 3.9.7 or later.
CVE-2024-38643 affects Notes Station 3 versions prior to 3.9.7.
Exploitation of CVE-2024-38643 could allow remote attackers to gain unauthorized access and execute critical functions.
There are no known workarounds for CVE-2024-38643 other than applying the recommended update.