Known vulnerabilities in File Station 5

Software CPE: cpe:2.3:a:qnap_systems:file_station_5:*:*:*:*:*:*:*:*
Total vulnerabilities: 47
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting File Station 5 File Station 5 is affected by 47 known vulnerabilities: 37 medium, 10 low Critical High Medium Low

Vulnerabilities (47)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU122969 - Resource exhaustion
CVE-2025-62854
CWE-400 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122968 - Improper Authentication
CVE-2025-57713
CWE-287 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122966 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-57707
CWE-94 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122965 - Out-of-bounds read
CVE-2025-54169
CWE-125 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122964 - NULL Pointer Dereference
CVE-2025-54163
CWE-476 Low
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122963 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-62856
CWE-22 Low
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122962 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-62855
CWE-22 Low
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122960 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-22894
CWE-22 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122958 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-66278
CWE-22 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122956 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-62853
CWE-22 Medium
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122951 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-54162
CWE-22 Low
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122940 - Allocation of Resources Without Limits or Throttling
CVE-2025-54161
CWE-770 Low
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU122914 - Allocation of Resources Without Limits or Throttling
CVE-2025-54155
CWE-770 Low
No
No
5.5.6.5190 16.02.2026 SB20260216159
#VU118224 - NULL Pointer Dereference
CVE-2025-53412
CWE-476 Low
No
No
5.5.6.5018 10.11.2025 SB2025111064
#VU118222 - NULL Pointer Dereference
CVE-2025-52865
CWE-476 Medium
No
No
5.5.6.5018 10.11.2025 SB2025111064
#VU118220 - NULL Pointer Dereference
CVE-2025-47207
CWE-476 Medium
No
No
5.5.6.5018 10.11.2025 SB2025111064
#VU118219 - Allocation of Resources Without Limits or Throttling
CVE-2025-53413
CWE-770 Medium
No
No
5.5.6.5018 10.11.2025 SB2025111064
#VU118218 - Allocation of Resources Without Limits or Throttling
CVE-2025-53411
CWE-770 Low
No
No
5.5.6.5018 10.11.2025 SB2025111064
#VU118217 - Allocation of Resources Without Limits or Throttling
CVE-2025-53409
CWE-770 Medium
No
No
5.5.6.5018 10.11.2025 SB2025111064
#VU118216 - Allocation of Resources Without Limits or Throttling
CVE-2025-53410
CWE-770 Medium
No
No
5.5.6.5018 10.11.2025 SB2025111064


Showing elements 1 - 20 out of 47