CVE Published: 11/02/2022 |
CVE Updated: 16/09/2024 |
CVE Year: 2021 Source: qnap |
Vendor: QNAP Systems Inc. |
Product: Kazoo Server Status : PUBLISHED
CVE-2021-38679 Description
An improper authentication vulnerability has been reported to affect QNAP NAS running Kazoo Server. If exploited, this vulnerability allows attackers to compromise the security of the system. We have already fixed this vulnerability in the following versions of Kazoo Server: Kazoo Server 4.11.22 and later
Metrics
CVSS Version: 3.1 |
Base Score: 6.5 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N