CVE-2024-56808
EUVD-2024-5543011.02.2026, 13:15
A command injection vulnerability has been reported to affect Media Streaming add-on. If an attacker gains local network access who have also gained a user account, they can then exploit the vulnerability to execute arbitrary commands. We have already fixed the vulnerability in the following version: Media Streaming add-on 500.1.1.6 ( 2024/08/02 ) and later
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| qnap | media_streaming_add-on | 500.1.1.0 ≤ 𝑥 < 500.1.1.6 |
𝑥
= Vulnerable software versions