QNAP Patches QuMagie Flaws Exposing Private Media Files
ID: e4be16c1-764b-5c3f-9c98-36b250e7d27d
STIX ID: report--e4be16c1-764b-5c3f-9c98-36b250e7d27d
Feed Name: securityonline.info
Threat Score
QNAP patched four vulnerabilities affecting QuMagie and License Center—three pre-authentication information-disclosure bugs in QuMagie that could let unauthenticated attackers access private photos, face-recognition thumbnails, and album archives, and a path-traversal issue in License Center requiring admin authentication; no in-the-wild exploitation has been reported and updates are available (QuMagie 2.9.1 / License Center 2.0.42).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
