Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

FTP:AUDIT:QNAP-QTS-HDAC

Severity

Major

Recommended

No

Recommended Action

Drop

Category

FTP

Keywords

QNAP QTS Hard Coded Credential Access

Release Date

2018/06/05

Update Number

3070

Supported Platforms

idp-4.0+, isg-3.4+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

FTP: QNAP QTS Hard Coded Credential Access


This signature detects attempts to exploit a known vulnerability against QNAP QTS. A successful exploit can lead to remote code execution.

Extended Description

The FTP service in QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, has hardcoded credentials, which makes it easier for remote attackers to obtain access via a session on TCP port 21.

Affected Products

  • Qnap iartist_lite 1.4.53.1
  • Qnap signage_station 2.0

References

  • CVE: CVE-2015-7261

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out