An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system.
We have already fixed the vulnerability in the following versions:
File Station 5 5.5.6.4791 and later
and later
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-25-09 |
|
History
Wed, 18 Jun 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qnap
Qnap file Station |
|
| CPEs | cpe:2.3:a:qnap:file_station:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Qnap
Qnap file Station |
|
| Metrics |
cvssV3_1
|
Fri, 06 Jun 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vulnerability in the following versions: File Station 5 5.5.6.4791 and later and later | |
| Title | File Station 5 | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: qnap
Published: 2025-06-06T15:54:34.504Z
Updated: 2025-06-06T16:34:58.993Z
Reserved: 2025-03-12T08:12:28.507Z
Link: CVE-2025-29884
Updated: 2025-06-06T16:18:55.628Z
Status : Analyzed
Published: 2025-06-06T16:15:25.510
Modified: 2025-06-18T18:09:53.787
Link: CVE-2025-29884
No data.