An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system.
We have already fixed the vulnerability in the following versions:
File Station 5 5.5.6.4791 and later
and later
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.qnap.com/en/security-advisory/qsa-25-09 |
![]() ![]() |
History
Wed, 18 Jun 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Qnap
Qnap file Station |
|
CPEs | cpe:2.3:a:qnap:file_station:*:*:*:*:*:*:*:* | |
Vendors & Products |
Qnap
Qnap file Station |
|
Metrics |
cvssV3_1
|
Fri, 06 Jun 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 06 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vulnerability in the following versions: File Station 5 5.5.6.4791 and later and later | |
Title | File Station 5 | |
Weaknesses | CWE-295 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: qnap
Published: 2025-06-06T15:54:29.327Z
Updated: 2025-06-06T16:35:06.639Z
Reserved: 2025-03-12T08:12:28.507Z
Link: CVE-2025-29883

Updated: 2025-06-06T16:19:01.231Z

Status : Analyzed
Published: 2025-06-06T16:15:25.370
Modified: 2025-06-18T17:32:09.147
Link: CVE-2025-29883

No data.