First published: Fri Nov 22 2024(Updated: )
A link following vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers to traverse the file system to unintended locations and read or overwrite the contents of unexpected files. We have already fixed the vulnerability in the following versions: QuLog Center 1.7.0.831 ( 2024/10/15 ) and later QuLog Center 1.8.0.888 ( 2024/10/15 ) and later
Credit: security@qnapsecurity.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
QuLog Center | <1.7.0.831<1.8.0.888 |
We have already fixed the vulnerability in the following versions: QuLog Center 1.7.0.831 ( 2024/10/15 ) and later QuLog Center 1.8.0.888 ( 2024/10/15 ) and later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-48862 is rated as a high severity vulnerability due to its potential for remote filesystem traversal and exploitation.
To fix CVE-2024-48862, ensure that you update QuLog Center to version 1.8.0.888 or greater.
If exploited, CVE-2024-48862 could allow attackers to access or overwrite sensitive files on the system.
CVE-2024-48862 affects all versions of QuLog Center up to 1.7.0.831 and 1.8.0.888.
Yes, remote access is required to exploit CVE-2024-48862 as it involves remote attackers leveraging the vulnerability.