APP: QNAP Transcode Server Command Injection
This signature detects attempts to exploit a known vulnerability against QNAP Transcode Server. A successful exploit can lead to remote code execution.
Extended Description
QNAP has patched a remote code execution vulnerability affecting the QTS Media Library in all versions prior to QTS 4.2.6 build 20170905 and QTS 4.3.3.0299 build 20170901. This particular vulnerability allows a remote attacker to execute commands on a QNAP NAS using a transcoding service on port 9251. A remote user does not require any privileges to successfully execute an attack.
Affected Products
Qnap qts
References
CVE: CVE-2017-13067
URL: http://docs.qnap.com/nas/4.1/Home/en/index.html?transcode_management.htm
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Qnap
7.5