CVE-2024-38640

Publication date

2024-09-06 16:29:50

Family

qnap

State

PUBLISHED

Description

A cross-site scripting (XSS) vulnerability has been reported to affect Download Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: Download Station 5.8.6.283 ( 2024/06/21 ) and later