Description
This cross-site scripting vulnerability in Photo Station allows remote attackers to inject malicious code. QANP We have already fixed this vulnerability in the following versions of Photo Station. QTS 4.5.1: Photo Station 6.0.12 and later QTS 4.4.3: Photo Station 6.0.12 and later QTS 4.3.6: Photo Station 5.7.12 and later QTS 4.3.4: Photo Station 5.7.13 and later QTS 4.3.3: Photo Station 5.4.10 and later QTS 4.2.6: Photo Station 5.2.11 and later
Affected products
- QNAP Systems Inc. / Photo Station< 6.0.12 – < 6.0.12
- QNAP Systems Inc. / Photo Station< 5.7.12 – < 5.7.12
- QNAP Systems Inc. / Photo Station< 5.7.13 – < 5.7.13
- QNAP Systems Inc. / Photo Station< 5.4.10 – < 5.4.10
- QNAP Systems Inc. / Photo Station< 5.2.11 – < 5.2.11