OS Command Injection Vulnerability in HBS 3 Hybrid Backup Sync by QNAP
CVE-2024-50388

Currently unrated

Key Information:

Vendor

QNAP

Vendor
CVE Published:
6 December 2024

What is CVE-2024-50388?

An OS command injection vulnerability has been identified in HBS 3 Hybrid Backup Sync, allowing remote attackers to execute arbitrary commands on the affected system. Successful exploitation could compromise the integrity and security of the application and potentially lead to unauthorized access to sensitive data. QNAP has addressed this vulnerability in version 25.1.1.673 and later, urging all users to update their software to mitigate the risks associated with this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

.