📦 File Station

by Qnap

🔍 What is File Station?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-48864

CRITICAL CVSS 9.1 Mar 7, 2025

This vulnerability in QNAP File Station 5 allows remote attackers to read or write files and directories without proper authorization. It affects all QNAP NAS devices running vulnerable versions of Fi...

CVE-2025-57707

HIGH CVSS 8.8 Feb 11, 2026

A static code injection vulnerability in QNAP File Station 5 allows authenticated attackers to access restricted files and data. This affects users of QNAP NAS devices running vulnerable versions of F...

CVE-2025-47206

HIGH CVSS 8.1 Aug 18, 2025

An out-of-bounds write vulnerability in QNAP File Station 5 allows authenticated attackers to modify or corrupt memory. This could lead to arbitrary code execution or system compromise. Only users wit...

CVE-2025-30279

HIGH CVSS 8.8 Jun 6, 2025

This CVE describes an improper certificate validation vulnerability in QNAP File Station 5. If an attacker obtains valid user credentials, they can exploit this flaw to bypass certificate validation a...

CVE-2025-29876

HIGH CVSS 7.5 Jun 6, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated attackers to cause denial-of-service by crashing the service. This affects organizations using vulnerable versions ...

CVE-2025-29883

HIGH CVSS 8.8 Jun 6, 2025

This CVE describes an improper certificate validation vulnerability in QNAP File Station 5 that allows remote attackers with user access to bypass certificate validation and potentially intercept or m...

CVE-2025-29885

HIGH CVSS 8.8 Jun 6, 2025

This CVE describes an improper certificate validation vulnerability in QNAP File Station 5. If exploited, remote attackers with user access could compromise system security by bypassing certificate va...

CVE-2025-22486

HIGH CVSS 8.8 Jun 6, 2025

This CVE describes an improper certificate validation vulnerability in QNAP File Station 5 that could allow remote attackers with user access to compromise system security. The vulnerability affects u...

CVE-2025-29872

HIGH CVSS 7.5 Jun 6, 2025

This vulnerability in QNAP File Station 5 allows authenticated attackers to exhaust system resources through uncontrolled resource allocation. Attackers with user accounts can prevent legitimate users...

CVE-2025-62856

MEDIUM CVSS 4.4 Feb 11, 2026

A path traversal vulnerability in QNAP File Station 5 allows local attackers with administrator privileges to read arbitrary files and system data. This affects QNAP NAS devices running vulnerable ver...

CVE-2025-66278

MEDIUM CVSS 6.5 Feb 11, 2026

A path traversal vulnerability in QNAP File Station 5 allows authenticated attackers to read arbitrary files on the system. This affects QNAP NAS devices running vulnerable versions of File Station 5....

CVE-2025-62854

MEDIUM CVSS 6.5 Feb 11, 2026

An uncontrolled resource consumption vulnerability in QNAP File Station 5 allows authenticated remote attackers to cause denial-of-service conditions. This affects users running vulnerable versions of...

CVE-2025-54162

MEDIUM CVSS 4.9 Feb 11, 2026

This path traversal vulnerability in QNAP File Station 5 allows authenticated administrators to read arbitrary files on the system. Attackers who compromise administrator credentials can access sensit...

CVE-2025-54169

MEDIUM CVSS 6.5 Feb 11, 2026

An out-of-bounds read vulnerability in QNAP File Station 5 allows authenticated remote attackers to read sensitive memory contents. This affects users with access to File Station 5 who haven't updated...

CVE-2025-54155

MEDIUM CVSS 4.9 Feb 11, 2026

This vulnerability in QNAP File Station 5 allows a remote attacker with administrator credentials to allocate system resources without limits, potentially causing denial of service by starving other p...

CVE-2025-53408

MEDIUM CVSS 6.5 Nov 7, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated attackers to cause denial-of-service by crashing the service. This affects all QNAP NAS devices running vulnerable ...

CVE-2025-53410

MEDIUM CVSS 6.5 Nov 7, 2025

This vulnerability in QNAP File Station 5 allows authenticated remote attackers to exhaust system resources, potentially causing denial-of-service conditions. Attackers with valid user credentials can...

CVE-2025-53412

MEDIUM CVSS 6.5 Nov 7, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated remote attackers to cause denial-of-service by crashing the service. This affects all QNAP NAS devices running vuln...

CVE-2025-47207

MEDIUM CVSS 6.5 Nov 7, 2025

A NULL pointer dereference vulnerability in QNAP File Station allows authenticated attackers to cause denial-of-service conditions. This affects users running vulnerable versions of File Station 5. At...

CVE-2025-29900

MEDIUM CVSS 6.5 Aug 29, 2025

This vulnerability in QNAP File Station 5 allows authenticated attackers to exhaust system resources through uncontrolled allocation, potentially causing denial of service. It affects users running vu...

CVE-2025-29886

MEDIUM CVSS 6.5 Aug 29, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated remote attackers to cause denial-of-service by crashing the service. This affects all QNAP NAS devices running vuln...

CVE-2025-29889

MEDIUM CVSS 6.5 Aug 29, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated attackers to cause denial-of-service conditions. This affects users running vulnerable versions of File Station 5 o...

CVE-2025-29874

MEDIUM CVSS 6.5 Aug 29, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated attackers to cause denial-of-service conditions. This affects users running vulnerable versions of File Station 5 o...

CVE-2025-29878

MEDIUM CVSS 6.5 Aug 29, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated attackers to cause denial-of-service conditions. This affects users running vulnerable versions of File Station 5 o...

CVE-2025-29901

MEDIUM CVSS 6.5 Aug 26, 2025

A NULL pointer dereference vulnerability in QNAP File Station 5 allows authenticated remote attackers to cause denial-of-service by crashing the service. This affects all QNAP NAS devices running vuln...

CVE-2025-33035

MEDIUM CVSS 6.5 Jun 6, 2025

A path traversal vulnerability in QNAP File Station 5 allows authenticated attackers to read arbitrary files on the system. This affects all QNAP NAS devices running vulnerable versions of File Statio...

CVE-2025-29871

MEDIUM CVSS 5.5 Jun 6, 2025

An out-of-bounds read vulnerability in QNAP File Station 5 allows local attackers with administrator privileges to read sensitive memory data. This affects QNAP NAS devices running vulnerable versions...