This cross-site scripting vulnerability in Photo Station allows remote attackers to inject malicious code. QANP We have already fixed this vulnerability in the following versions of Photo Station. Photo Station 6.0.11 and later
References
Link | Resource |
---|---|
https://www.qnap.com/en/security-advisory/qsa-21-06 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2021-02-17 04:15
Updated : 2021-02-22 19:14
NVD link : CVE-2020-2502
Mitre link : CVE-2020-2502
JSON object : View
Products Affected
qnap
- photo_station
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')