SEPTEMBER 21, 2026
Live Feed
Back to database
Case File

CVE-2017-7876

CRITICAL · CVSS 10 EPSS 3.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-06-15 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 10.0. See the original NVD description below for full technical details.

CVE
CVE-2017-7876
Severity
CRITICAL
CVSS
10
EPSS
3.30%

Original NVD Description

This command injection vulnerability in QTS allows attackers to run arbitrary commands in the compromised application. QNAP have already fixed the issue in QTS 4.2.6 build 20170517, QTS 4.3.3.0174 build 20170503 and later versions.

Related CVEs

Other vulnerabilities affecting the same vendor(s)