An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers who have gained user access to execute unauthorized code or commands.
We have already fixed the vulnerability in the following versions:
QVPN Windows 2.0.0.1316 and later
QVPN Windows 2.0.0.1310 and later
References
Link | Resource |
---|---|
https://www.qnap.com/en/security-advisory/qsa-23-04 |
Configurations
No configuration.
History
19 Dec 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-19 02:15
Updated : 2024-12-19 02:15
NVD link : CVE-2022-27595
Mitre link : CVE-2022-27595
CVE.ORG link : CVE-2022-27595
JSON object : View
Products Affected
No product.
CWE
CWE-427
Uncontrolled Search Path Element