CVE-2019-7195

QNAP Photo Station Path Traversal Vulnerability

QNAP devices running Photo Station contain an external control of file name or path vulnerability allowing remote attackers to access or modify system files. Vendor/Product: QNAP Photo Station. Added to CISA KEV 2022-06-08; required action: Apply updates per vendor instructions.

Category: Vulnerability, Known Exploited