vulnerability

QNAP Photostation: CVE-2019-7195: Improper Limitation of a Pathname to a Restricted Directory

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Dec 15, 2019
Added
Apr 17, 2025
Modified
Apr 21, 2025

Description

This external control of file name or path vulnerability allows remote attackers to access or modify system files.

Solution

qnap-photostation-obsolete
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.