CVE-2017-7638

CVE-2017-7638: vulnerability in QNAP Media Streaming Add-On

Published · Updated

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 0.7%
exploitation probability
0.7%top 50% of all CVEs
observed exploitation
nono source reports it
QNAP NAS application Media Streaming add-on version 421.1.0.2, 430.1.2.0, and earlier does not authenticate requests properly. Successful exploitation could lead to change of the Media Streaming settings, and leakage of sensitive information of the QNAP NAS.
Related CVEs — QNAP Media Streaming Add-On

In the same product, most dangerous first.