QNAP Helpdesk 3.0.1

CPE Details

QNAP Helpdesk 3.0.1
3.0.1
2019-12-13
14h01 +00:00
2019-12-13
14h01 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:qnap:helpdesk:3.0.1:*:*:*:*:*:*:*

Informations

Vendor

qnap

Product

helpdesk

Version

3.0.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-27125 2024-09-06 16h27 +00:00 A cross-site scripting (XSS) vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow authenticated administrators to inject malicious code via a network. We have already fixed the vulnerability in the following version: Helpdesk 3.3.1 and later
4.8
Medium
CVE-2021-28814 2021-06-11 06h35 +00:00 An improper access control vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows remote attackers to compromise the security of the software. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.4.
8.8
High
CVE-2020-2506 2021-02-03 15h51 +00:00 The vulnerability have been reported to affect earlier versions of QTS. If exploited, this improper access control vulnerability could allow attackers to compromise the security of the software by gaining privileges, or reading sensitive information. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.
9.8
Critical
CVE-2020-2507 2021-02-03 15h51 +00:00 The vulnerability have been reported to affect earlier versions of QTS. If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.
9.8
Critical
CVE-2018-19946 2020-09-11 12h14 +00:00 The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this improper certificate validation vulnerability could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.
5.9
Medium
CVE-2018-19947 2020-09-11 12h14 +00:00 The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this information exposure vulnerability could disclose sensitive information. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.
6.5
Medium
CVE-2018-19948 2020-09-11 12h12 +00:00 The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this cross-site request forgery (CSRF) vulnerability could allow attackers to force NAS users to execute unintentional actions through a web application. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.
6.5
Medium