CVE-2025-47207
published 2025-11-07CVE-2025-47207: A NULL pointer dereference vulnerability has been reported to affect several product versions. If a remote attacker gains a user account, they can then exploit…
medium5.3CVSS 4.0
AVNACLATNPRLUINVCNVINVALSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A NULL pointer dereference vulnerability has been reported to affect several product versions. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack.
We have already fixed the vulnerability in the following version:
File Station 5 5.5.6.5018 and later
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| qnap | file_station | >= 5.5.6.4691 < 5.5.6.5018 | 5.5.6.5018 |
| qnap_systems_inc | file_station_5 | >= 5.5.x < 5.5.6.5018 | 5.5.6.5018 |