This command injection vulnerability allows attackers to execute arbitrary commands in a compromised application. QNAP have already fixed this vulnerability in the following versions of QTS and QuTS hero. QuTS hero h4.5.1.1472 build 20201031 and later QTS 4.5.1.1456 build 20201015 and later QTS 4.4.3.1354 build 20200702 and later
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: qnap

Published: 2020-12-07T00:00:00

Updated: 2020-12-10T03:34:17

Reserved: 2019-01-29T00:00:00


Link: CVE-2019-7198

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-12-10T04:15:11.267

Modified: 2021-06-21T16:57:36.830


Link: CVE-2019-7198

JSON object: View

cve-icon Redhat Information

No data.