An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow local authenticated attackers who have gained administrator access to read or modify the resource.
We have already fixed the vulnerability in the following version:
Notes Station 3 3.9.7 and later
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://www.qnap.com/en/security-advisory/qsa-24-36 |
Configurations
No configuration.
History
No history.
Information
Published : 2024-11-22 16:15
Updated : 2024-11-22 16:15
NVD link : CVE-2024-38646
Mitre link : CVE-2024-38646
CVE.ORG link : CVE-2024-38646
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource