📦 Qumagie

by Qnap

🔍 What is Qumagie?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-52425

CRITICAL CVSS 9.8 Nov 7, 2025

An SQL injection vulnerability in QuMagie allows remote attackers to execute arbitrary SQL commands. This affects all QuMagie installations before version 2.7.0. Attackers could potentially compromise...

CVE-2025-58464

HIGH CVSS 7.5 Nov 7, 2025

A relative path traversal vulnerability in QuMagie allows remote attackers to read arbitrary files on the system. This affects all QuMagie installations before version 2.7.3. Attackers can potentially...

CVE-2023-47560

HIGH CVSS 7.4 Jan 5, 2024

This CVE describes an OS command injection vulnerability in QuMagie, a photo management application from QNAP. It allows authenticated users to execute arbitrary commands on the system via network req...

CVE-2023-39295

HIGH CVSS 8.8 Nov 10, 2023

This CVE describes an OS command injection vulnerability in QuMagie that allows authenticated users to execute arbitrary commands on the system. The vulnerability affects QuMagie versions before 2.1.3...

CVE-2023-41285

HIGH CVSS 7.4 Nov 10, 2023

This SQL injection vulnerability in QuMagie allows authenticated users to execute arbitrary SQL commands via network requests. It affects users running vulnerable versions of QuMagie on QNAP NAS devic...

CVE-2025-62857

MEDIUM CVSS 6.1 Jan 2, 2026

A cross-site scripting (XSS) vulnerability in QuMagie allows remote attackers to inject malicious scripts that execute in users' browsers. This affects all QuMagie users running vulnerable versions, p...