CVE-2019-7193
CRITICALThis improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.
EPSS Exploitation Probability
EPSS (Exploit Prediction Scoring System) is a daily probability model maintained by FIRST.org. It estimates the likelihood a CVE will be exploited in production environments within the next 30 days, derived from real-world threat intelligence signals.
Description
This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.
Affected Products
qtsqnapResearch use only. For defensive security, authorized penetration testing, and academic research only. Never execute exploit code against systems without explicit written authorization.
This improper input validation vulnerability allows remote attackers to …
This improper input validation vulnerability allows remote attackers to …
This improper input validation vulnerability allows remote attackers to …
This improper input validation vulnerability allows remote attackers to …
Frequently Asked Questions
Is CVE-2019-7193 in your stack?
O3 detects CVE-2019-7193 across dependencies and uses function-level reachability to confirm whether the vulnerable code path is actually reachable — not just present. No false positives.