CVE-2021-44057
Improper authentication in Photo Station
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.1EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
05 May 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An improper authentication vulnerability has been reported to affect QNAP device running Photo Station. If exploited, this vulnerability allows attackers to compromise the security of the system. We have already fixed this vulnerability in the following versions of Photo Station: Photo Station 6.0.20 ( 2022/02/15 ) and later Photo Station 5.7.16 ( 2022/02/11 ) and later Photo Station 5.4.13 ( 2022/02/11 ) and later
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Affected products
QNAP Systems Inc. · Photo StationWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →