CVE-2024-32764

A missing authentication for critical function vulnerability has been reported to affect myQNAPcloud Link. If exploited, the vulnerability could allow users with the privilege level of some functionality via a network. We have already fixed the vulnerability in the following version: myQNAPcloud Link 2.4.51 and later
Configurations

No configuration.

History

21 Nov 2024, 09:15

Type Values Removed Values Added
Summary
  • (es) Se ha informado que falta una autenticación para una vulnerabilidad de función crítica que afecta a myQNAPcloud Link. Si se explota, la vulnerabilidad podría permitir a los usuarios con el nivel de privilegio de alguna funcionalidad a través de una red. Ya hemos solucionado la vulnerabilidad en la siguiente versión: myQNAPcloud Link 2.4.51 y posteriores
References () https://www.qnap.com/en/security-advisory/qsa-24-09 - () https://www.qnap.com/en/security-advisory/qsa-24-09 -

26 Apr 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-26 15:15

Updated : 2024-11-21 09:15


NVD link : CVE-2024-32764

Mitre link : CVE-2024-32764

CVE.ORG link : CVE-2024-32764


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function

CWE-346

Origin Validation Error

CWE-749

Exposed Dangerous Method or Function