CVE-2025-57713
Analyzed Analyzed - Analysis Complete
Weak Authentication in File Station 5 Allows Sensitive Data Access

Publication date: 2026-02-11

Last updated on: 2026-02-12

Assigner: QNAP Systems, Inc.

Description
A weak authentication vulnerability has been reported to affect File Station 5. The remote attackers can then exploit the vulnerability to gain sensitive information. We have already fixed the vulnerability in the following version: File Station 5 5.5.6.5166 and later
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-02-11
Last Modified
2026-02-12
Generated
2026-06-16
AI Q&A
2026-02-11
EPSS Evaluated
2026-06-14
NVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
qnap file_station From 5.5.6.4691 (inc) to 5.5.6.5190 (exc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1390 The product uses an authentication mechanism to restrict access to specific users or identities, but the mechanism does not sufficiently prove that the claimed identity is correct.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability is a weak authentication issue affecting File Station 5. It allows remote attackers to exploit the weakness in the authentication mechanism to gain access to sensitive information.

Impact Analysis

The impact of this vulnerability is that remote attackers could potentially obtain sensitive information by exploiting the weak authentication in File Station 5.

Compliance Impact

I don't know

Detection Guidance

I don't know

Mitigation Strategies

To mitigate this vulnerability, update File Station 5 to version 5.5.6.5166 or later, where the issue has been fixed.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-57713. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart