← Back to browse · API

CVE-2020-2507

Severity
CRITICAL
CVSS
9.8
EPSS
0.03042
Risk score
40.26
CISA KEV
No
PoC
No
Published
2021-02-03
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2020-22300, GHSA-7R29-W7VH-5P6Q
Products
GFI Software:Helpdesk unspecified <3.0.3
Sources
euvd EUVD-2020-22300

Description

The vulnerability have been reported to affect earlier versions of QTS. If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. This issue affects: QNAP Systems Inc. Helpdesk versions prior to 3.0.3.

References