An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system.
We have already fixed the vulnerability in the following versions:
File Station 5 5.5.6.4791 and later
and later
References
Link | Resource |
---|---|
https://www.qnap.com/en/security-advisory/qsa-25-09 | Vendor Advisory |
Configurations
History
18 Jun 2025, 17:31
Type | Values Removed | Values Added |
---|---|---|
First Time |
Qnap file Station
Qnap |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
References | () https://www.qnap.com/en/security-advisory/qsa-25-09 - Vendor Advisory | |
CPE | cpe:2.3:a:qnap:file_station:*:*:*:*:*:*:*:* |
09 Jun 2025, 12:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
06 Jun 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-06 16:15
Updated : 2025-06-18 17:31
NVD link : CVE-2025-22486
Mitre link : CVE-2025-22486
CVE.ORG link : CVE-2025-22486
JSON object : View
Products Affected
qnap
- file_station
CWE
CWE-295
Improper Certificate Validation