References https://nvd.nist.gov/vuln/detail/CVE-2019-7192 https://www.qnap.com/en/security-advisory/nas-201911-25 https://www.cve.org/CVERecord?id=CVE-2019-7192 https://www.cvedetails.com/cve/CVE-2019-7192/ https://github.com/th3gundy/CVE-2019-7192_QNAP_Exploit https://www.exploit-db.com/exploits/48531 https://cycrafttechnology.medium.com/qnap-pre-auth-root-rce-affecting-312k-devices-on-the-internet-fc8af285622e https://www.rapid7.com/db/vulnerabilities/qnap-photostation-cve-2019-7192/ https://attackerkb.com/topics/CVE-2019-7192 https://www.tenable.com/cve/CVE-2019-7192
Related VulnerabilitiesPoCCVE-2018-7192: osTicket < 1.10.2 - Cross-Site ScriptingPoCCVE-2019-7192: QNAP QTS and Photo Station 6.0.3 - Remote Command ExecutionQNAP-NAS V4.3 photostation文件-反射型XSS(CVE-2018-19956)