CVE-2024-50404 Information

Description

A link following vulnerability has been reported to affect Qsync Central. If exploited the vulnerability could allow remote attackers who have gained user access to traverse the file system to unintended locations.

We have already fixed the vulnerability in the following versions: Qsync Central 4.4.0.16_20240819 ( 2024/08/19 ) and later

Reference

https://www.qnap.com/en/security-advisory/qsa-24-48

Share on: