Vulnerability Description
This command injection vulnerability in Music Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating Music Station to their latest versions.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qnap | Music Station | < 5.3.5 |
| Qnap | Qts | 4.4.1 |
Related Weaknesses (CWE)
References
- https://www.qnap.com/zh-tw/security-advisory/nas-201911-20Vendor Advisory
- https://www.qnap.com/zh-tw/security-advisory/nas-201911-20Vendor Advisory
FAQ
What is CVE-2018-0729?
CVE-2018-0729 is a vulnerability with a CVSS score of 9.8 (CRITICAL). This command injection vulnerability in Music Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating Music Station to their latest versi...
How severe is CVE-2018-0729?
CVE-2018-0729 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-0729?
Check the references section above for vendor advisories and patch information. Affected products include: Qnap Music Station, Qnap Qts.