CVE-2019-7193: QNAP QTS Improper Input Validation Vulnerability
This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.
Other sources
QNAP QTS contains an improper input validation vulnerability allowing remote attackers to inject code on the system.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-7193?
CVE-2019-7193 is an improper input validation vulnerability in QNAP QTS.
How can remote attackers exploit CVE-2019-7193?
Remote attackers can exploit CVE-2019-7193 to inject arbitrary code to the system.
What is the severity of CVE-2019-7193?
CVE-2019-7193 has a severity level of 9.8 (critical).
How can I fix CVE-2019-7193?
To fix CVE-2019-7193, QNAP recommends updating QTS to the latest version.
Where can I find more information about CVE-2019-7193?
You can find more information about CVE-2019-7193 in the references provided: http://packetstormsecurity.com/files/157857/QNAP-QTS-And-Photo-Station-6.0.3-Remote-Command-Execution.html, https://www.qnap.com/zh-tw/security-advisory/nas-201911-25