Description
An improper authentication vulnerability has been reported to affect VioStor. If a remote attacker, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerability in the following version: VioStor 5.1.6 build 20250621 and later
Problem types
Product status
5.1.0 before 5.1.6 build 20250621
Credits
360 的安全研究员 侯留洋(houliuyang@360.cn)
References
www.qnap.com/en/security-advisory/qsa-25-29