The vulnerability have been reported to affect earlier versions of...
Vulnerability Description
The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this cross-site request forgery (CSRF) vulnerability could allow attackers to force NAS users to execute unintentional actions through a web application. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-19948
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Independent Security Evaluators
Affected Vendor
QNAP Systems Inc.
View all reports →