Security Advisory

CVE-2017-7634

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-03-08 14:00:00
Last updated 2024-09-16 20:11:44
Assigner qnap
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in QNAP NAS application Media Streaming add-on version 421.1.0.2, 430.1.2.0, and earlier allows remote attackers to inject arbitrary web script or HTML. The injected code will only be triggered by a crafted link, not the normal page.