CVE Database
/

CVE-2018-19941

Back to search

CVE-2018-19941

Published: Dec 31, 2020

Modified: Sep 16, 2024

PUBLISHED

Description

A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an attacker to access sensitive information stored in cleartext inside cookies via certain widely-available tools. QNAP have already fixed this vulnerability in the following versions: QTS 4.5.1.1456 build 20201015 (and later) QuTS hero h4.5.1.1472 build 20201031 (and later) QuTScloud c4.5.2.1379 build 20200730 (and later)

VendorProductVersions

QNAP Systems Inc.

QTS

affected
unspecified - < 4.5.1.1456

QNAP Systems Inc.

QuTS hero

affected
unspecified - < h4.5.1.1472

QNAP Systems Inc.

QuTScloud

affected
unspecified - < c4.5.2.1379

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now