CVE-2024-38639

Summary

An improper authentication vulnerability has been reported to affect product. The remote attackers can then exploit the vulnerability to compromise the security of the system. QTS is not affected.

We have already fixed the vulnerability in the following version:

Affected Software

VendorProductVersion RangeStatus
QNAP Systems Inc.QTS?unaffected

Weaknesses

  • CWE-287: CWE-287

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References