QNAP File Station 5 Path Traversal Vulnerability

Vulnerability

A path traversal vulnerability exists in QNAP File Station 5 versions 5.5.x. This vulnerability allows remote attackers with user accounts to read unintended files or system data. The issue has been resolved in File Station 5 version 5.5.6.4847 and later.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive files or system data.

Remediation

Users are advised to update File Station 5 to the latest version. Instructions for updating can be found in the QNAP App Center.

Added: Jun 6, 2025, 4:28 PM
Updated: Jun 6, 2025, 4:28 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.