The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the vulnerability could allow remote attackers to inject malicious code. This issue affects: QNAP Systems Inc. Photo Station versions prior to 5.7.11; versions prior to 6.0.10.
References
Link | Resource |
---|---|
https://www.qnap.com/en/security-advisory/qsa-20-11 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-11-02 08:15
Updated : 2022-11-16 08:29
NVD link : CVE-2018-19954
Mitre link : CVE-2018-19954
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
qnap
- photo_station