Vulnerability Details CVE-2023-47221
A path traversal vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow authenticated administrators to read the contents of unexpected files and expose sensitive data via a network.
We have already fixed the vulnerability in the following version:
Photo Station 6.4.2 ( 2023/12/15 ) and later
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.1%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2023-47221
-
cpe:2.3:a:qnap:photo_station:6.4.0
-
cpe:2.3:a:qnap:photo_station:6.4.1