Total vulnerabilities in the database
Absolute path traversal vulnerability in cgi-bin/jc.cgi in QNAP QTS before 4.1.0 allows remote attackers to read arbitrary files via a full pathname in the f parameter.
Software | From | Fixed in |
---|---|---|
qnap / qts | - | 4.0.3.x |
qnap / qts | 4.0 | 4.0.x |