Loading HuntDB...

QNAP NAS File Station Command Injection Vulnerability

Added May 24, 2022 Due June 14, 2022 CVE-2018-19949
Overdue QNAP / Network Attached Storage (NAS) Known Ransomware Use CWE-20 CWE-77 CWE-78

Description

A command injection vulnerability affecting QNAP NAS File Station could allow remote attackers to run commands.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
5 months ago