VYPR

Q-SYS Core Manager

by QSC

CVEs (1)

  • CVE-2020-24990Oct 28, 2020
    risk 0.00cvss epss 0.04

    An issue was discovered in QSC Q-SYS Core Manager 8.2.1. By utilizing the TFTP service running on UDP port 69, a remote attacker can perform a directory traversal and obtain operating system files via a TFTP GET request, as demonstrated by reading /etc/passwd or /proc/version.