CVE-2017-13068: QNAP QTS Helpdesk
High severity, CVSS 7.5. EPSS: 2.6% chance of exploitation in the next 30 days.
QNAP has already patched this vulnerability. This security concern allows a remote attacker to perform an SQL injection on the application and obtain Helpdesk application information. A remote attacker does not require any privileges to successfully execute this attack.
Affected products
- QNAP QTS Helpdesk: up to and including 1.1.12
Published 2017-10-06. Last modified 2026-06-17.