Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Photo Station — Vulnerabilities & Security Advisories 34

All 34 CVE vulnerabilities found in Photo Station, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumeration vulnerabilities affecting Photo Station, a network-attached storage solution developed by QNAP Systems. The content aggregates security issues within this product, focusing on weaknesses such as cross-site scripting, buffer overflows, and improper access control mechanisms. This resource covers vulnerability data spanning from the product’s initial release through recent patches, ensuring a comprehensive historical perspective on security incidents. By visiting this page, you can effectively track vendor advisories related to QNAP’s firmware updates and understand the specific characteristics of each weakness class identified in the software. Additionally, you can look up the product's vulnerability history to assess risk levels and prioritize remediation efforts based on the severity and exploitability of reported flaws. The aggregation aims to provide clear, actionable insights for security professionals, system administrators, and researchers who rely on Photo Station for data management. All entries are categorized by weakness type and linked to relevant vendor notices, facilitating a deeper understanding of the threat landscape associated with this specific NAS application. This information supports informed decision-making regarding patch deployment and configuration hardening. The data is continuously updated to reflect newly disclosed issues and resolved incidents, maintaining accuracy and relevance for ongoing security assessments.

Vendor: Synology

CVE IDTitleCVSSSeverityPublished
CVE-2017-20210 Photo Station 9.8 -2025-11-11
CVE-2024-12923 Photo Station CWE-79 6.1 -2025-08-29
CVE-2024-32767 Photo Station CWE-79 6.3 Medium2024-11-22
CVE-2024-32768 Photo Station CWE-79 6.3 Medium2024-11-22
CVE-2024-32769 Photo Station CWE-79 6.3 Medium2024-11-22
CVE-2024-32770 Photo Station CWE-79 6.3 Medium2024-11-22
CVE-2023-47221 Photo Station CWE-22 5.5 Medium2024-03-08
CVE-2023-47562 Photo Station CWE-77 7.4 High2024-02-02
CVE-2023-47561 Photo Station CWE-79 5.5 Medium2024-02-02
CVE-2022-27593 DeadBolt Ransomware CWE-610 10.0 Critical2022-09-08
CVE-2022-22681 Synology Photo Station 授权问题漏洞 CWE-384 8.1 High2022-07-06
CVE-2021-44057 Improper authentication in Photo Station CWE-287 7.1 High2022-05-05
CVE-2021-34356 Stored XSS Vulnerability in Photo Station CWE-79 7.6 High2021-10-01
CVE-2021-34355 Stored XSS Vulnerability in Photo Station CWE-79 7.6 High2021-10-01
CVE-2021-34354 Stored Cross-site Scripting Vulnerability in Photo Station CWE-79 7.6 High2021-10-01
CVE-2020-2502 Cross-site Scripting Vulnerability in Photo Station CWE-79 6.1 -2021-02-17
CVE-2020-2491 Cross-site Scripting Vulnerability in Photo Station CWE-79 6.1 -2020-12-10
CVE-2018-19954 QNAP Systems TS-870 跨站脚本漏洞 CWE-79 6.1 -2020-11-02
CVE-2018-19956 QNAP Systems TS-870 跨站脚本漏洞 CWE-79 6.1 -2020-11-02
CVE-2018-19955 QNAP Systems TS-870 跨站脚本漏洞 CWE-79 6.1 -2020-11-02
CVE-2019-11822 Synology Photo Station 路径遍历漏洞 CWE-23 4.3 Medium2019-06-30
CVE-2019-11821 Synology Photo Station SQL注入漏洞 CWE-89 7.3 High2019-06-30
CVE-2018-0722 QNAP Systems QNAP QTS Photo Station 路径遍历漏洞 7.5 -2019-02-01
CVE-2018-13282 Synology Photo Station 安全漏洞 CWE-384 7.6 -2018-10-31
CVE-2018-0715 QNAP Photo Station 跨站脚本漏洞 6.1 -2018-08-27
CVE-2018-8925 Synology Photo Station 跨站请求伪造漏洞 8.8 -2018-06-08
CVE-2018-8926 Synology Photo Station 安全漏洞 CWE-625 8.8 -2018-06-08
CVE-2017-13073 QNAP NAS application Photo Station 跨站脚本漏洞 6.1 -2018-04-23
CVE-2017-16772 Synology Photo Station 输入验证漏洞 CWE-434 8.8 -2018-03-22
CVE-2017-16771 Synology Photo Station Log Viewer 跨站脚本漏洞 CWE-79 6.1 -2018-03-22

All 34 known CVE vulnerabilities affecting Photo Station with full Chinese analysis, references, and POCs where available.