Vulnerabilities > CVE-2015-7261 - Credentials Management vulnerability in Qnap Iartist Lite and Signage Station
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
The FTP service in QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, has hardcoded credentials, which makes it easier for remote attackers to obtain access via a session on TCP port 21.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |