PT-2019-6309 · Qnap · Qts

Henry Huang

·

Published

2019-11-25

·

Updated

2025-02-13

·

CVE-2019-7193

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions QNAP QTS (affected versions not specified)
Description This issue is related to improper input validation, allowing remote attackers to inject arbitrary code into the system. There is no information provided about the estimated number of potentially affected devices worldwide or details about real-world incidents where this issue was exploited.
Recommendations To fix the vulnerability, update QTS to the latest version. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation. Avoid using the system until the issue is resolved with an update to the latest version. At the moment, there is no information about specific versions that contain a fix for this vulnerability, so updating to the latest version is the recommended course of action.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-00685
CVE-2019-7193

Affected Products

Qts