An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system.
We have already fixed the vulnerability in the following versions:
File Station 5 5.5.6.4791 and later
and later
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.qnap.com/en/security-advisory/qsa-25-09 |
![]() ![]() |
History
Wed, 18 Jun 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Qnap
Qnap file Station |
|
CPEs | cpe:2.3:a:qnap:file_station:*:*:*:*:*:*:*:* | |
Vendors & Products |
Qnap
Qnap file Station |
|
Metrics |
cvssV3_1
|
Fri, 06 Jun 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 06 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vulnerability in the following versions: File Station 5 5.5.6.4791 and later and later | |
Title | File Station 5 | |
Weaknesses | CWE-295 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: qnap
Published: 2025-06-06T15:54:21.872Z
Updated: 2025-06-06T16:35:12.573Z
Reserved: 2025-01-07T06:55:33.250Z
Link: CVE-2025-22486

Updated: 2025-06-06T16:19:07.303Z

Status : Analyzed
Published: 2025-06-06T16:15:24.330
Modified: 2025-06-18T17:31:19.907
Link: CVE-2025-22486

No data.