Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

QNAP Systems Inc. — Vulnerabilities & Security Advisories 558

Browse all 558 CVE security advisories affecting QNAP Systems Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

QNAP Systems Inc. manufactures network-attached storage devices and enterprise storage solutions, primarily serving small to medium-sized businesses and home users seeking centralized data management. Historically, the company’s firmware has exhibited a high volume of vulnerabilities, including remote code execution, cross-site scripting, and privilege escalation flaws. These issues often stem from insufficient input validation and improper access controls within the web management interface or embedded services. Notable incidents involve critical RCE vulnerabilities that allow unauthenticated attackers to gain full system control, exposing connected data to theft or ransomware encryption. The sheer number of recorded CVEs highlights persistent challenges in secure coding practices and rigorous patch management across its diverse product line. While QNAP provides security updates, the frequency of disclosed flaws necessitates strict network segmentation and proactive monitoring for administrators relying on these storage appliances for critical infrastructure.

CVE ID Title CVSS Severity Published
CVE-2025-30264 QTS, QuTS hero — QTS CWE-77 8.8 - 2025-08-29
CVE-2025-30263 Qsync Central — Qsync Central CWE-476 7.5 - 2025-08-29
CVE-2025-30262 Qsync Central — Qsync Central CWE-476 7.5 - 2025-08-29
CVE-2025-30261 Qsync Central — Qsync Central CWE-770 5.8 - 2025-08-29
CVE-2025-30260 Qsync Central — Qsync Central CWE-770 5.8 - 2025-08-29
CVE-2025-29900 File Station 5 — File Station 5 CWE-770 5.0 - 2025-08-29
CVE-2025-29899 File Station 5 — File Station 5 CWE-770 5.0 - 2025-08-29
CVE-2025-29898 Qsync Central — Qsync Central CWE-400 7.5 - 2025-08-29
CVE-2025-29894 Qsync Central — Qsync Central CWE-89 9.8 - 2025-08-29
CVE-2025-29893 Qsync Central — Qsync Central CWE-89 9.8 - 2025-08-29
CVE-2025-29890 File Station 5 — File Station 5 CWE-770 5.0 - 2025-08-29
CVE-2025-29889 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-29888 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-29887 QuRouter 2.5 — QuRouter CWE-77 7.2 - 2025-08-29
CVE-2025-29886 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-29882 QTS, QuTS hero — QTS CWE-476 7.5 - 2025-08-29
CVE-2025-29879 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-29878 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-29875 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-29874 File Station 5 — File Station 5 CWE-476 7.5 - 2025-08-29
CVE-2025-22483 License Center — License Center CWE-79 4.8 - 2025-08-29
CVE-2024-12923 Photo Station — Photo Station CWE-79 6.1 - 2025-08-29
CVE-2025-29901 File Station 5 — File Station 5 CWE-476 7.5AI High AI 2025-08-26
CVE-2025-47206 File Station 5 — File Station 5 CWE-787 9.1AI Critical AI 2025-08-18
CVE-2025-29885 File Station 5 — File Station 5 CWE-295 8.8AI High AI 2025-06-06
CVE-2025-29884 File Station 5 — File Station 5 CWE-295 8.8AI High AI 2025-06-06
CVE-2025-29883 File Station 5 — File Station 5 CWE-295 8.8AI High AI 2025-06-06
CVE-2025-22486 File Station 5 — File Station 5 CWE-295 8.8AI High AI 2025-06-06
CVE-2025-29892 Qsync Central — Qsync Central CWE-89 8.8AI High AI 2025-06-06
CVE-2025-22482 Qsync Central — Qsync Central CWE-134 7.1AI High AI 2025-06-06

This page lists every published CVE security advisory associated with QNAP Systems Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.