- Description
- NULL Pointer Dereference vulnerability in QTS 4.3.5 build 20181013, QTS 4.3.4 build 20181008, QTS 4.3.3 build 20180829, QTS 4.2.6 build 20180829 and earlier versions could allow remote attackers to crash the NAS media server.
- Source
- security@qnapsecurity.com.tw
- NVD status
- Modified
CVSS 3.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
- nvd@nist.gov
- CWE-476
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:qnap:qts:4.2.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1D9E6F8F-A433-45A7-8839-5D478FE179A4"
},
{
"criteria": "cpe:2.3:o:qnap:qts:4.3.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C5994C07-17FE-4784-9FA4-9675BA8B4743"
},
{
"criteria": "cpe:2.3:o:qnap:qts:4.3.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F0C7D2D4-769F-4297-89F4-75366FFA7618"
},
{
"criteria": "cpe:2.3:o:qnap:qts:4.3.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2C7CF3D8-0BB6-410F-84C1-D48764687561"
}
],
"operator": "OR"
}
]
}
]