CVE-2022-24990 | TerraMaster NAS up to 4.2.29 webNasIPS PWD information disclosure
A vulnerability described as problematic has been identified in TerraMaster NAS up to 4.2.29. The affected element is an unknown function of the file module/api.php?mobile/webNasIPS. Such manipulation of the argument PWD leads to information disclosure.
This vulnerability is listed as CVE-2022-24990. The attack may be performed from remote. In addition, an exploit is available.