PT-2020-8659 · Qnap Systems · Music Station

Published

2020-11-02

·

Updated

2022-11-16

·

CVE-2018-19951

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: QNAP Systems Inc. Music Station versions prior to 5.1.13 QNAP Systems Inc. Music Station versions prior to 5.2.9 QNAP Systems Inc. Music Station versions prior to 5.3.11
Description: This issue is a cross-site scripting vulnerability that could allow remote attackers to inject malicious code if exploited.
Recommendations: For versions prior to 5.1.13, update to version 5.1.13 or later. For versions prior to 5.2.9, update to version 5.2.9 or later. For versions prior to 5.3.11, update to version 5.3.11 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2018-19951

Affected Products

Music Station