Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2018-19949

QNAP | Network Attached Storage (NAS)Added 2022-05-24Remediation Deadline 2022-06-14Active Ransomware Campaign

QNAP NAS File Station Command Injection Vulnerability

A command injection vulnerability affecting QNAP NAS File Station could allow remote attackers to run commands.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-20

CWE-77

CWE-78

References