QNAP Update
2972Warning Date
Severity Level
Warning Number
Target Sector
25 June, 2020
● Critical
2020-1400
All
Description:
QNAP has released security update to address a vulnerability in the following product:
Threats:
Attacker could exploit this vulnerability by taking control of of QNAP Kayako service. Attackers can access the sensitive data on QNAP Kayako server with API keys.
Best practice and Recommendations:
The CERT team encourages users to review QNAP security advisory and update Helpdesk to 3.0.1 and later: