{"api_version":"v1","generated_at":"2026-10-09T13:00:00+00:00","product":{"cve_count":9,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-qnap-systems-music-station-d2dfe2949ca6","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Music Station","next_cursor":null,"observations":[{"affected":"5.4.x < 5.4.0","affected_versions_present":true,"cve_id":"CVE-2023-45038","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-45038","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-06T17:44:36.623Z","patch_url":"","primary_source":"","published":"2024-09-06T16:26:59.319Z"},{"affected":"4.8.x < 4.8.11; 5.1.x < 5.1.16; 5.3.x < 5.3.23","affected_versions_present":true,"cve_id":"CVE-2023-39299","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39299","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-05T18:40:12.259Z","patch_url":"","primary_source":"","published":"2023-11-03T16:34:46.932Z"},{"affected":"5.3.x < 5.3.22","affected_versions_present":true,"cve_id":"CVE-2023-23366","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-23366","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-19T15:20:25.517Z","patch_url":"","primary_source":"","published":"2023-10-06T16:34:01.529Z"},{"affected":"5.3.x < 5.3.22","affected_versions_present":true,"cve_id":"CVE-2023-23365","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-23365","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-19T15:20:40.296Z","patch_url":"","primary_source":"","published":"2023-10-06T16:33:40.264Z"},{"affected":"unspecified < 5.3.16; unspecified < 5.2.10; unspecified < 5.1.14","affected_versions_present":true,"cve_id":"CVE-2020-36197","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-36197","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-17T01:01:30.720Z","patch_url":"http://packetstormsecurity.com/files/162849/QNAP-MusicStation-MalwareRemover-File-Upload-Command-Injection.html","primary_source":"","published":"2021-05-13T02:55:12.525Z"},{"affected":"< 5.3.13; < 5.3.12","affected_versions_present":true,"cve_id":"CVE-2020-2494","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-2494","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-17T00:40:59.501Z","patch_url":"","primary_source":"","published":"2020-12-10T03:36:27.203Z"},{"affected":"unspecified < 5.1.13; unspecified < 5.2.9; unspecified < 5.3.11","affected_versions_present":true,"cve_id":"CVE-2018-19952","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-19952","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-17T02:58:07.767Z","patch_url":"","primary_source":"","published":"2020-11-02T15:57:02.626Z"},{"affected":"unspecified < 5.1.13; unspecified < 5.2.9; unspecified < 5.3.11","affected_versions_present":true,"cve_id":"CVE-2018-19951","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-19951","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T20:22:27.691Z","patch_url":"","primary_source":"","published":"2020-11-02T15:57:02.569Z"},{"affected":"unspecified < 5.1.13; unspecified < 5.2.9; unspecified < 5.3.11","affected_versions_present":true,"cve_id":"CVE-2018-19950","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-19950","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-17T02:31:26.145Z","patch_url":"","primary_source":"","published":"2020-11-02T15:57:02.523Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"QNAP Systems Inc."}}
