PT-2019-18461 · Qnap · Qts
Jérémie Zanone
·
Published
2019-12-04
·
Updated
2019-12-06
·
CVE-2019-7197
CVSS v3.1
4.8
Medium
| Vector | AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
QTS versions prior to the latest version
Description
A stored cross-site scripting (XSS) issue has been reported, which may allow an attacker to inject and execute scripts on the administrator console.
Recommendations
Update QTS to the latest version to fix this issue.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Qts