An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system.
We have already fixed the vulnerability in the following versions:
File Station 5 5.5.6.4791 and later
and later
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.qnap.com/en/security-advisory/qsa-25-09 |
![]() ![]() |
History
Wed, 18 Jun 2025 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Qnap
Qnap file Station |
|
CPEs | cpe:2.3:a:qnap:file_station:*:*:*:*:*:*:*:* | |
Vendors & Products |
Qnap
Qnap file Station |
|
Metrics |
cvssV3_1
|
Fri, 06 Jun 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 06 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vulnerability in the following versions: File Station 5 5.5.6.4791 and later and later | |
Title | File Station 5 | |
Weaknesses | CWE-295 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: qnap
Published: 2025-06-06T15:54:34.504Z
Updated: 2025-06-06T16:34:58.993Z
Reserved: 2025-03-12T08:12:28.507Z
Link: CVE-2025-29884

Updated: 2025-06-06T16:18:55.628Z

Status : Analyzed
Published: 2025-06-06T16:15:25.510
Modified: 2025-06-18T18:09:53.787
Link: CVE-2025-29884

No data.