Now I cannot recreate said exploit but do not have web logging turned so that may be the work around ... or it is simply bogus to begin with. I go and put bunk info in the login prompt and do see the error reported in the dnas window as stated in this report.
Come to think of it, I have no logging whatsoever. SC would build a huge file too fast even with touches removed and I hated having to manually delete it every couple days.
I only ever get to see just what is in the Tail Logfile screen, which is enough info for me since I only have a meager 10 litstener capability.
Thought I'd put this out here for everyone to see however.
yes, I am using DNAS 1.9.2/Win32