Vulnerabilities (CVE)

Filtered by vendor Qnap Subscribe
Filtered by product Music Station
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-2494 1 Qnap 3 Music Station, Qts, Quts Hero 2023-11-14 4.3 MEDIUM 6.1 MEDIUM
This cross-site scripting vulnerability in Music Station allows remote attackers to inject malicious code. QANP have already fixed this vulnerability in the following versions of Music Station. QuTS hero h4.5.1: Music Station 5.3.13 and later QTS 4.5.1: Music Station 5.3.12 and later QTS 4.4.3: Music Station 5.3.12 and later
CVE-2018-19951 1 Qnap 2 Music Station, Qts 2020-11-02 4.3 MEDIUM 6.1 MEDIUM
If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. This issue affects: QNAP Systems Inc. Music Station versions prior to 5.1.13; versions prior to 5.2.9; versions prior to 5.3.11.
CVE-2019-7185 1 Qnap 2 Music Station, Qts 2020-02-10 3.5 LOW 4.8 MEDIUM
This cross-site scripting (XSS) vulnerability in Music Station allows remote attackers to inject and execute scripts on the administrator’s management console. To fix this vulnerability, QNAP recommend updating Music Station to their latest versions.