Description
If exploited, this vulnerability allows an attacker to access resources which are not otherwise accessible without proper authentication. Roon Labs has already fixed this vulnerability in the following versions: Roon Server 2021-05-18 and later
References
https://www.qnap.com/zh-tw/security-advisory/qsa-21-17
Vendor Advisory
https://www.qnap.com/zh-tw/security-advisory/qsa-21-17
Vendor Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
7.5 · High
Information
Source identifier
Vulnerability status
Modified
Published
2021-06-08T03:15:07.030Z
5 years agoLast modified
2026-06-17T03:46:54.300Z
2 months ago