An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers to compromise the security of the system.
We have already fixed the vulnerability in the following version:
Helpdesk 3.3.3 and later
References
| Link | Resource |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-25-05 | Vendor Advisory |
Configurations
History
22 Jan 2026, 18:30
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.qnap.com/en/security-advisory/qsa-25-05 - Vendor Advisory | |
| Summary |
|
|
| CPE | cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:* | |
| First Time |
Qnap helpdesk
Qnap |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
07 Mar 2025, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-03-07 17:15
Updated : 2026-01-22 18:30
NVD link : CVE-2024-50394
Mitre link : CVE-2024-50394
CVE.ORG link : CVE-2024-50394
JSON object : View
Products Affected
qnap
- helpdesk
CWE
CWE-295
Improper Certificate Validation
