CVE-2024-50394

An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers to compromise the security of the system. We have already fixed the vulnerability in the following version: Helpdesk 3.3.3 and later
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*

History

22 Jan 2026, 18:30

Type Values Removed Values Added
References () https://www.qnap.com/en/security-advisory/qsa-25-05 - () https://www.qnap.com/en/security-advisory/qsa-25-05 - Vendor Advisory
Summary
  • (es) Se ha informado de una vulnerabilidad de validación de certificado incorrecta que afecta a Helpdesk. Si se explota, la vulnerabilidad podría permitir a atacantes remotos poner en peligro la seguridad del sistema. Ya hemos corregido la vulnerabilidad en la siguiente versión: Helpdesk 3.3.3 y posteriores
CPE cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*
First Time Qnap helpdesk
Qnap
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

07 Mar 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-07 17:15

Updated : 2026-01-22 18:30


NVD link : CVE-2024-50394

Mitre link : CVE-2024-50394

CVE.ORG link : CVE-2024-50394


JSON object : View

Products Affected

qnap

  • helpdesk
CWE
CWE-295

Improper Certificate Validation