ZDI-26-198: (Pwn2Own) QNAP TS-453E malware_remover Code Injection Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP TS-453E devices. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2025-11837.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-198?
The severity of ZDI-26-198 is critical due to the potential for remote code execution without authentication.
How do I fix ZDI-26-198?
To fix ZDI-26-198, users should update their QNAP TS-453E devices to the latest firmware version that addresses this vulnerability.
Who is affected by ZDI-26-198?
ZDI-26-198 affects all installations of the QNAP TS-453E devices that have not been patched.
Can ZDI-26-198 be exploited remotely?
Yes, ZDI-26-198 can be exploited remotely by network-adjacent attackers without requiring authentication.
What type of vulnerability is ZDI-26-198?
ZDI-26-198 is a code injection vulnerability that allows for arbitrary code execution on affected QNAP devices.