Back

CRITICAL KEV Used in ransomware campaigns

This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system

Published Dec 5, 2019 ·Due Jun 22, 2022

Description

This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner qnap
Published Dec 5, 2019
Updated Oct 21, 2025
Reserved Jan 29, 2019
CISA Vulnrichment
Updated Feb 6, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a