QNAP File Station 5 Resource Allocation Vulnerability

Vulnerability

A vulnerability has been identified in QNAP File Station 5, specifically in versions 5.5.x, allowing for resource allocation without limits or throttling. This vulnerability can be exploited by remote attackers who gain access to a user account, enabling them to disrupt other systems, applications, or processes by monopolizing certain resources. The issue has been resolved in File Station 5 version 5.5.6.4847 and later.

Impact

Exploitation of this vulnerability can lead to resource exhaustion, causing disruptions in system performance by preventing other applications or processes from accessing essential resources.

Remediation

Users are advised to update QNAP File Station 5 to version 5.5.6.4847 or later. Instructions for updating the application are available on the QNAP website.

Added: Jun 6, 2025, 4:34 PM
Updated: Jun 6, 2025, 4:34 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
5.2
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.