SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2018-19947

The vulnerability have been reported to affect earlier versions of Helpdesk.

MEDIUM 6.5EPSS 0.76%

Does this matter?

Lower severity and a low EPSS score (0.76%). Track it; it rarely justifies an emergency change on its own.

Description

The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this information exposure vulnerability could disclose sensitive information. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.

CVSS 3.1
6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS
0.76% probability · 53th percentile
CISA KEV
Not listed
Weakness
CWE-200, CWE-209, CWE-210
Affected
qnap/helpdesk
Source
security@qnapsecurity.com.tw

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.