IPTIME NAS2dual improper authentication vulnerability
Vulnerability Description
An improper authentication vulnerability leading to information leakage was discovered in iptime NAS2dual. Remote attackers are able to steal important information in the server by exploiting vulnerabilities such as insufficient authentication when accessing the shared folder and changing user’s passwords.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-26620
Credits & Attribution
No credits recorded in the NVD database.
More from EFM Networks Co., Ltd
View All →Affected Vendor
EFM Networks Co., Ltd
View all reports →