Security Advisory

CVE-2024-38640

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-06 16:29:50
Last updated 2024-09-06 16:57:49
Assigner qnap
State PUBLISHED

Description

A cross-site scripting (XSS) vulnerability has been reported to affect Download Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: Download Station 5.8.6.283 ( 2024/06/21 ) and later