QNAP File Station 5 Path Traversal Vulnerability

Vulnerability

A path traversal vulnerability has been identified in QNAP File Station 5, specifically in versions 5.5.x prior to 5.5.6.5190. This vulnerability allows local attackers with administrator accounts to exploit the issue and read the contents of unexpected files or system data.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive files or system information.

Remediation

Users are advised to update QNAP File Station 5 to version 5.5.6.5190 or later. Instructions for updating the application are available on the QNAP website.

Added: Feb 11, 2026, 1:21 PM
Updated: Feb 11, 2026, 5:10 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.0
remediation
0.0
relevance
2.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.