Description
An unquoted service path vulnerability is reported to affect the service QVssService in QNAP NetBak Replicator. This vulnerability could allow an authorized but non-privileged local user to execute arbitrary code with elevated system privileges. QNAP have already fixed this issue in QNAP NetBak Replicator 4.5.12.1108.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-16745 | An unquoted service path vulnerability is reported to affect the service QVssService in QNAP NetBak Replicator. This vulnerability could allow an authorized but non-privileged local user to execute arbitrary code with elevated system privileges. QNAP have already fixed this issue in QNAP NetBak Replicator 4.5.12.1108. |
References
| Link | Providers |
|---|---|
| https://www.qnap.com/zh-tw/security-advisory/nas-201912-02 |
|
History
No history.
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2024-08-04T20:38:33.433Z
Reserved: 2019-01-29T00:00:00.000Z
Link: CVE-2019-7201
No data.
Status : Modified
Published: 2019-12-04T17:16:44.507
Modified: 2024-11-21T04:47:45.237
Link: CVE-2019-7201
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD