An improper certificate validation vulnerability has been reported to affect Video Station. If an attacker gains local network access who have also gained an administrator account, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerability in the following version: Video Station 5.8.2 and later
History

Thu, 12 Mar 2026 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Qnap Systems
Qnap Systems video Station
Vendors & Products Qnap Systems
Qnap Systems video Station

Wed, 11 Mar 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 11 Mar 2026 09:30:00 +0000

Type Values Removed Values Added
References

Wed, 11 Mar 2026 08:30:00 +0000

Type Values Removed Values Added
References

Wed, 11 Mar 2026 08:15:00 +0000

Type Values Removed Values Added
Description An improper certificate validation vulnerability has been reported to affect Video Station. If an attacker gains local network access who have also gained an administrator account, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerability in the following version: Video Station 5.8.2 and later
Title Video Station
Weaknesses CWE-295
References
Metrics cvssV4_0

{'score': 0.1, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:P/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:U'}


cve-icon MITRE

Status: PUBLISHED

Assigner: qnap

Published: 2026-03-11T08:02:03.876Z

Updated: 2026-03-11T14:12:35.283Z

Reserved: 2026-03-09T01:16:12.021Z

Link: CVE-2024-14024

cve-icon Vulnrichment

Updated: 2026-03-11T14:12:31.158Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-03-11T08:16:01.633

Modified: 2026-03-11T13:52:47.683

Link: CVE-2024-14024

cve-icon Redhat

No data.