SQL Injection Vulnerability in QNAP Video Station Software
CVE-2024-14025
0.1LOW
What is CVE-2024-14025?
An SQL injection vulnerability has been discovered in QNAP's Video Station software. This vulnerability allows an attacker with local network access and an administrative account to execute unauthorized code or commands. It is crucial for users to upgrade to Video Station version 5.8.2 or later to protect against potential exploitation. For more details, refer to the security advisory provided by QNAP.
Affected Version(s)
Video Station 5.8.x < 5.8.2