Back

CRITICAL KEV Used in ransomware campaigns

This external control of file name or path vulnerability allows remote attackers to access or modify system files

Published Dec 5, 2019 ·Due Jun 22, 2022

Description

This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fix the vulnerability, QNAP recommend updating Photo Station to their latest versions.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner qnap
Published Dec 5, 2019
Updated Oct 21, 2025
Reserved Jan 29, 2019
CISA Vulnrichment
Updated Feb 6, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a