← Back to browse · API

CVE-2019-7193

Severity
CRITICAL
CVSS
9.8
EPSS
0.14367
Risk score
69.23
CISA KEV
Yes
PoC
No
Published
2019-12-05
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2019-16737, GHSA-964W-HFJ4-C2G7
Products
QNAP:QTS, n/a:QNAP NAS devices QTS 4.4.0 - QTS 4.4.1: before build 20190918, QTS 4.3.6: before build 20190919
Sources
cisa.gov CVE-2019-7193
euvd EUVD-2019-16737

Description

This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.

References