QNAP Media Streaming add-on
cpe:2.3:a:qnap:media_streaming_add-on:*:*:*:*:*:*:*
- ~500.1
A command injection vulnerability exists in the QNAP Media Streaming add-on versions 500.1.x. This vulnerability allows an attacker with local network access and a user account to execute arbitrary commands on the affected system.
Exploitation of this vulnerability could lead to unauthorized execution of commands on the system where the Media Streaming add-on is installed.
Users are advised to update the Media Streaming add-on to version 500.1.1.6 or later. Instructions for updating the add-on are available on the QNAP website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.