Vulnerability Description
Path Traversal vulnerability in Photo Station versions: 5.7.2 and earlier in QTS 4.3.4, 5.4.4 and earlier in QTS 4.3.3, 5.2.8 and earlier in QTS 4.2.6 could allow remote attackers to access sensitive information on the device.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qnap | Photo Station | >= 5.7.0, <= 5.7.2 |
| Qnap | Qts | 4.3.4 |
Related Weaknesses (CWE)
References
- https://www.qnap.com/zh-tw/security-advisory/nas-201901-14Vendor Advisory
- https://www.qnap.com/zh-tw/security-advisory/nas-201901-14Vendor Advisory
FAQ
What is CVE-2018-0722?
CVE-2018-0722 is a vulnerability with a CVSS score of 7.5 (HIGH). Path Traversal vulnerability in Photo Station versions: 5.7.2 and earlier in QTS 4.3.4, 5.4.4 and earlier in QTS 4.3.3, 5.2.8 and earlier in QTS 4.2.6 could allow remote attackers to access sensitive ...
How severe is CVE-2018-0722?
CVE-2018-0722 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-0722?
Check the references section above for vendor advisories and patch information. Affected products include: Qnap Photo Station, Qnap Qts.