CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 10.0. See the original NVD description below for full technical details.
CVE
CVE-2017-7876
Severity
CRITICAL
CVSS
10
EPSS
3.30%
Original NVD Description
This command injection vulnerability in QTS allows attackers to run arbitrary commands in the compromised application. QNAP have already fixed the issue in QTS 4.2.6 build 20170517, QTS 4.3.3.0174 build 20170503 and later versions.
Related CVEs
Other vulnerabilities affecting the same vendor(s)