High severity7.5NVD Advisory· Published Oct 6, 2017· Updated May 13, 2026
CVE-2017-13068
CVE-2017-13068
Description
QNAP has already patched this vulnerability. This security concern allows a remote attacker to perform an SQL injection on the application and obtain Helpdesk application information. A remote attacker does not require any privileges to successfully execute this attack.
Affected products
1- QNAP/QNAP Helpdesk APPv5Range: QTS Helpdesk versions 1.1.12 and earlier
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.qnap.com/en/security-advisory/nas-201709-29nvdVendor Advisory
News mentions
0No linked articles in our index yet.