CVE-2015-7262
Last modified
CVE-2015-7262 is a vulnerability of currently unknown severity. QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, allows remote authenticated users to gain privileges by registering an executable file, and then waiting for this file to be run in a privileged context after a reboot.. EPSS estimates a 1.50% chance of exploitation in the next 30 days.
Description
QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, allows remote authenticated users to gain privileges by registering an executable file, and then waiting for this file to be run in a privileged context after a reboot.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qnap | Iartist Lite | <= 1.4.53.1 |
| Qnap | Signage Station | <= 2.0 |
References
- http://www.kb.cert.org/vuls/id/444472Third Party Advisory, US Government Resource
- http://www.kb.cert.org/vuls/id/444472Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-7262?
How severe is CVE-2015-7262?
How do I fix CVE-2015-7262?
Are you affected by CVE-2015-7262?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
