QNAP Vulnerabilities and Affected Products
Vulnerabilities associated with Photo Station.
Products
Clear product- qts38 vulnerabilities
- quts_hero27 vulnerabilities
- Photo Station8 vulnerabilities
- qutscloud8 vulnerabilities
- Q'center Virtual Appliance7 vulnerabilities
- QNAP Network-Attached Storage (NAS)5 vulnerabilities
- Network Attached Storage (NAS)4 vulnerabilities
- notes_station_34 vulnerabilities
- QNAP Media Streaming Add-On4 vulnerabilities
- QNAP QTS4 vulnerabilities
- media_streaming_add-on3 vulnerabilities
- qurouter3 vulnerabilities
- Helpdesk2 vulnerabilities
- malware_remover2 vulnerabilities
- music_station2 vulnerabilities
- QTS Login function2 vulnerabilities
- QTS Password function2 vulnerabilities
- qufirewall2 vulnerabilities
- ai_core1 vulnerability
- App Center in QTS1 vulnerability
- container_station1 vulnerability
- hbs_31 vulnerability
- Helpdesk in QTS1 vulnerability
- iartist_lite1 vulnerability
- LDAP Server in QTS1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2017-20210CRITICAL | Photo StationPhoto Station 5.4.1 & 5.2.7 include the security fix for the vulnerability related to the XMR mining programs identified by internal research. CWE-200Nov 11, 2025 | CVSS9.8v3.1 | EPSS0.345% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-27593CRITICAL | DeadBolt RansomwareAn externally controlled reference to a resource vulnerability has been reported to affect QNAP NAS running Photo Station. If exploited, This could allow an attacker to modify system files. We have already fixed the vulnerability in the following versions: QTS 5.0.1: Photo Station 6.1.2 and later QTS 5.0.0/4.5.x: Photo Station 6.0.22 and later QTS 4.3.6: Photo Station 5.7.18 and later QTS 4.3.3: Photo Station 5.4.15 and later QTS 4.2.6: Photo Station 5.2.14 and later | CVSS10.0v3.1 | EPSS87.9% | PoCs0 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2019-7195CRITICAL | QNAP Photo Station Path Traversal VulnerabilityThis external control of file name or path vulnerability allows remote attackers to access or modify system files. To fix the vulnerability, QNAP recommend updating Photo Station to their latest versions. | CVSS9.8v3.1 | EPSS89.7% | PoCs3 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2019-7194CRITICAL | QNAP Photo Station Path Traversal VulnerabilityThis external control of file name or path vulnerability allows remote attackers to access or modify system files. To fix the vulnerability, QNAP recommend updating Photo Station to their latest versions. | CVSS9.8v3.1 | EPSS83.1% | PoCs1 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2019-7192CRITICAL | QNAP Photo Station Improper Access Control VulnerabilityThis improper access control vulnerability allows remote attackers to gain unauthorized access to the system. To fix these vulnerabilities, QNAP recommend updating Photo Station to their latest versions. | CVSS9.8v3.1 | EPSS88.2% | PoCs3 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2018-0722HIGH | Path Traversal vulnerability in Photo Station versions: 5.7.2 and earlier in QTS 4.3.4, 5.4.4 and earlier in QTS 4.3.3, 5.2.8 and earlier in QTS 4.2.6 could allow remote attackers to access sensitive information on the device. CWE-22Feb 1, 2019 | CVSS7.5v3.0 | EPSS1.74% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-0715MEDIUM | QNAP Photo Station 5.7.0 - Cross-Site ScriptingCross-site scripting vulnerability in QNAP Photo Station versions 5.7.0 and earlier could allow remote attackers to inject Javascript code in the compromised application. CWE-79Aug 27, 2018 | CVSS6.1v3.0 | EPSS3.12% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2017-13073MEDIUM | Cross-site scripting (XSS) vulnerability in QNAP NAS application Photo Station versions 5.2.7, 5.4.3, and their earlier versions could allow remote attackers to inject arbitrary web script or HTML. CWE-79Apr 23, 2018 | CVSS6.1v3.0 | EPSS0.772% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |