CVE-2018-0730: QNAP QTS

Critical severity, CVSS 9.8. EPSS: 2% chance of exploitation in the next 30 days.

This command injection vulnerability in File Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.

Affected products

  • QNAP QTS: version 4.2.6 only; version 4.3.3.0868 only; version 4.3.3.0998 only; version 4.3.4.0899 only; version 4.3.4.1029 only; version 4.3.6.0895 only; …

Published 2019-12-04. Last modified 2026-06-17.