We have already fixed the vulnerability in the following version:
QuMagie 2.9.1 and later
Project Subscriptions
No advisories yet.
Solution
We have already fixed the vulnerability in the following version: QuMagie 2.9.1 and later
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-26-35 |
|
Fri, 12 Jun 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qnap
Qnap qumagie |
|
| CPEs | cpe:2.3:a:qnap:qumagie:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Qnap
Qnap qumagie |
|
| Metrics |
cvssV3_1
|
Tue, 09 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qnap Systems
Qnap Systems qumagie |
|
| Vendors & Products |
Qnap Systems
Qnap Systems qumagie |
Tue, 09 Jun 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authorization bypass through user-controlled key vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to gain unintended privileges. We have already fixed the vulnerability in the following version: QuMagie 2.9.1 and later | |
| Title | QuMagie | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2026-06-09T13:10:16.398Z
Reserved: 2026-05-05T07:32:16.697Z
Link: CVE-2026-44083
Updated: 2026-06-09T13:10:11.456Z
Status : Analyzed
Published: 2026-06-09T08:16:28.940
Modified: 2026-06-12T15:47:47.960
Link: CVE-2026-44083
No data.
OpenCVE Enrichment
Updated: 2026-06-09T09:00:08Z