Unrated severityNVD Advisory· Published Mar 11, 2026· Updated Mar 11, 2026
Video Station
CVE-2024-14025
Description
An SQL injection vulnerability has been reported to affect Video Station. If an attacker gains local network access who have also gained an administrator account, they can then exploit the vulnerability to execute unauthorized code or commands.
We have already fixed the vulnerability in the following version: Video Station 5.8.2 and later
Affected products
1- QNAP Systems Inc./Video Stationv5Range: 5.8.x
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.