CVE-2020-29189: TerraMaster Tos
High severity, CVSS 8.1. EPSS: 1.9% chance of exploitation in the next 30 days.
Incorrect Access Control vulnerability in TerraMaster TOS <= 4.2.06 allows remote authenticated attackers to bypass read-only restriction and obtain full access to any folder within the NAS
Affected products
- TerraMaster Tos: up to and including 4.2.06
Published 2020-12-24. Last modified 2026-07-09.