Latest CVE Feed
-
7.2
HIGHCVE-2025-33035
A path traversal vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerabilit... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Path Traversal
-
8.3
HIGHCVE-2025-33031
An improper certificate validation vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerabil... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Misconfiguration
-
8.3
HIGHCVE-2025-30279
An improper certificate validation vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerabi... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Misconfiguration
-
8.7
HIGHCVE-2025-29892
An SQL injection vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gained user access to execute unauthorized code or commands. We have already fixed the vulnerability in the fo... Read more
Affected Products : qsync_central- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Injection
-
8.8
HIGHCVE-2025-29885
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vuln... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Misconfiguration
-
8.8
HIGHCVE-2025-29884
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vuln... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Misconfiguration
-
8.8
HIGHCVE-2025-29883
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vuln... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Misconfiguration
-
7.5
HIGHCVE-2025-29877
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability i... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Denial of Service
-
7.5
HIGHCVE-2025-29876
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability i... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Denial of Service
-
7.5
HIGHCVE-2025-29873
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability i... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Denial of Service
-
7.5
HIGHCVE-2025-29872
An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to prevent other systems, applications, or processes from... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Denial of Service
-
5.5
MEDIUMCVE-2025-29871
An out-of-bounds read vulnerability has been reported to affect File Station 5. If a local attacker gains an administrator account, they can then exploit the vulnerability to obtain secret data. We have already fixed the vulnerability in the following v... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Information Disclosure
-
7.5
HIGHCVE-2025-22490
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability i... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Denial of Service
-
8.8
HIGHCVE-2025-22486
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vuln... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 18, 2025
- Vuln Type: Cryptography
-
7.1
HIGHCVE-2025-22484
An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to prevent other systems, applications, or processes from... Read more
Affected Products : file_station- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Denial of Service
-
2.3
LOWCVE-2025-22482
A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow remote attackers who have gained user access to obtain secret data or modify memory. We have already fixed t... Read more
Affected Products : qsync_central- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Information Disclosure
-
8.7
HIGHCVE-2025-22481
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to execute arbitrary commands. We have already fixed the vulner... Read more
- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Injection
-
5.3
MEDIUMCVE-2024-56805
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to modify memory or crash processes. We have already fixed the vu... Read more
- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Memory Corruption
-
2.0
LOWCVE-2024-50406
A cross-site scripting (XSS) vulnerability has been reported to affect License Center. If exploited, the vulnerability could allow remote attackers who have gained user access to bypass security mechanisms or read application data. We have already fixed ... Read more
Affected Products :- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Cross-Site Scripting
-
5.2
MEDIUMCVE-2024-13088
An improper authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerability in the follow... Read more
Affected Products :- Published: Jun. 06, 2025
- Modified: Jun. 09, 2025
- Vuln Type: Authentication