CVE Published: 30/11/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: qnap |
Vendor: QNAP |
Product: Qsync Central Status : PUBLISHED
CVE-2018-0716 Description
Cross-site scripting vulnerability in QTS 4.2.6 build 20180711, QTS 4.3.3: Qsync Central 3.0.2, QTS 4.3.4: Qsync Central 3.0.3, QTS 4.3.5: Qsync Central 3.0.4 and earlier versions could allow remote attackers to inject Javascript code in the compromised application.