Vulnerability Details CVE-2024-48862
A link following vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers to traverse the file system to unintended locations and read or overwrite the contents of unexpected files.
We have already fixed the vulnerability in the following versions:
QuLog Center 1.7.0.831 ( 2024/10/15 ) and later
QuLog Center 1.8.0.888 ( 2024/10/15 ) and later
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.0%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-48862
-
cpe:2.3:a:qnap:qulog_center:1.7.0.800
-
cpe:2.3:a:qnap:qulog_center:1.7.0.804
-
cpe:2.3:a:qnap:qulog_center:1.7.0.827
-
cpe:2.3:a:qnap:qulog_center:1.8.0.872