CVE Tools

Music Station

13 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Music Station, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.

Music Station CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Music Station CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 13 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical431%
  • High538%
  • Medium431%

Latest CVEs

The 13 most recently published vulnerabilities affecting Music Station.

  1. CVE-2023-45038Music Station4.3
  2. CVE-2023-39299Music Station7.5
  3. CVE-2023-23366Music Station7.7
  4. CVE-2023-23365Music Station7.7
  5. CVE-2020-36197Improper Access Control Vulnerability in Music Station7.1
  6. CVE-2020-2494Cross-site Scripting Vulnerability in Music Station6.1
  7. CVE-2018-19952If exploited, this SQL injection vulnerability could allow remote attackers to obtain application information. This issue affects: QNAP Systems Inc. Music Station versions prior to 5.1.13; versions...7.5
  8. CVE-2018-19951If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. This issue affects: QNAP Systems Inc. Music Station versions prior to 5.1.13; versions p...6.1
  9. CVE-2018-19950If exploited, this command injection vulnerability could allow remote attackers to execute arbitrary commands. This issue affects: QNAP Systems Inc. Music Station versions prior to 5.1.13; versions...9.8
  10. CVE-2019-7185This cross-site scripting (XSS) vulnerability in Music Station allows remote attackers to inject and execute scripts on the administrator’s management console. To fix this vulnerability, QNAP rec...4.8
  11. CVE-2018-0729This command injection vulnerability in Music Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating Music Station to their latest ve...9.8
  12. CVE-2018-0718Command injection vulnerability in Music Station 5.1.2 and earlier versions in QNAP QTS 4.3.3 and 4.3.4 could allow remote attackers to run arbitrary commands in the compromised application.9.8
  13. CVE-2017-13069QNAP discovered a number of command injection vulnerabilities found in Music Station versions 4.8.6 (for QTS 4.2.x), 5.0.7 (for QTS 4.3.x), and earlier. If exploited, these vulnerabilities may allo...9.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store