Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

QNAP Systems Inc. — Vulnerabilities & Security Advisories 558

Browse all 558 CVE security advisories affecting QNAP Systems Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

QNAP Systems Inc. manufactures network-attached storage devices and enterprise storage solutions, primarily serving small to medium-sized businesses and home users seeking centralized data management. Historically, the company’s firmware has exhibited a high volume of vulnerabilities, including remote code execution, cross-site scripting, and privilege escalation flaws. These issues often stem from insufficient input validation and improper access controls within the web management interface or embedded services. Notable incidents involve critical RCE vulnerabilities that allow unauthenticated attackers to gain full system control, exposing connected data to theft or ransomware encryption. The sheer number of recorded CVEs highlights persistent challenges in secure coding practices and rigorous patch management across its diverse product line. While QNAP provides security updates, the frequency of disclosed flaws necessitates strict network segmentation and proactive monitoring for administrators relying on these storage appliances for critical infrastructure.

CVE ID Title CVSS Severity Published
CVE-2025-52430 QTS, QuTS hero — QTS CWE-476 7.5 - 2026-01-02
CVE-2025-52426 QTS, QuTS hero — QTS CWE-476 7.5 - 2026-01-02
CVE-2025-47208 QTS, QuTS hero — QTS CWE-770 5.0 - 2026-01-02
CVE-2025-44013 QTS, QuTS hero — QTS CWE-476 7.5 - 2026-01-02
CVE-2025-62857 QuMagie — QuMagie CWE-79 6.1 - 2026-01-02
CVE-2025-59385 QTS, QuTS hero — QTS CWE-290 9.1AI Critical AI 2025-12-16
CVE-2025-62847 QTS, QuTS hero — QTS CWE-88 9.1AI Critical AI 2025-12-16
CVE-2025-62848 QTS, QuTS hero — QTS CWE-476 7.5AI High AI 2025-12-16
CVE-2025-62849 QTS, QuTS hero — QTS CWE-89 9.8AI Critical AI 2025-12-16
CVE-2017-20210 Photo Station — Photo Station 9.8 - 2025-11-11
CVE-2025-47207 File Station 5 — File Station 5 CWE-476 7.5 - 2025-11-07
CVE-2025-52425 QuMagie — QuMagie CWE-89 9.8 - 2025-11-07
CVE-2025-52865 File Station 5 — File Station 5 CWE-476 7.5 - 2025-11-07
CVE-2025-53408 File Station 5 — File Station 5 CWE-476 7.5 - 2025-11-07
CVE-2025-53409 File Station 5 — File Station 5 CWE-770 5.0 - 2025-11-07
CVE-2025-53410 File Station 5 — File Station 5 CWE-770 5.0 - 2025-11-07
CVE-2025-53411 File Station 5 — File Station 5 CWE-770 6.8 - 2025-11-07
CVE-2025-53412 File Station 5 — File Station 5 CWE-476 7.5 - 2025-11-07
CVE-2025-53413 File Station 5 — File Station 5 CWE-770 5.0 - 2025-11-07
CVE-2025-54167 Notification Center — Notification Center CWE-79 5.4 - 2025-11-07
CVE-2025-54168 QuLog Center — QuLog Center CWE-79 5.4 - 2025-11-07
CVE-2025-57706 File Station 5 — File Station 5 CWE-79 5.4 - 2025-11-07
CVE-2025-57712 Qsync Central — Qsync Central CWE-22 7.5 - 2025-11-07
CVE-2025-58463 Download Station — Download Station CWE-23 6.5 - 2025-11-07
CVE-2025-58464 QuMagie — QuMagie CWE-23 7.5 - 2025-11-07
CVE-2025-58465 Download Station — Download Station CWE-79 5.4 - 2025-11-07
CVE-2025-58469 QuLog Center — QuLog Center CWE-352 8.8 - 2025-11-07
CVE-2025-57714 NetBak Replicator — NetBak Replicator CWE-428 6.7AI Medium AI 2025-10-03
CVE-2025-54154 QNAP Authenticator — QNAP Authenticator CWE-287 6.8AI Medium AI 2025-10-03
CVE-2025-54153 Qsync Central — Qsync Central CWE-89 9.8 - 2025-10-03

This page lists every published CVE security advisory associated with QNAP Systems Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.