CVE-2025-54162: File Station 5
A path traversal vulnerability has been reported to affect File Station 5. If a remote attacker gains an administrator account, they can then exploit the vulnerability to read the contents of unexpected files or system data.
We have already fixed the vulnerability in the following version: File Station 5 5.5.6.5068 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54162?
CVE-2025-54162 is considered a high severity vulnerability due to the potential for remote attackers to exploit it if they gain administrator access.
How do I fix CVE-2025-54162?
To fix CVE-2025-54162, update the affected File Station software to the latest version provided by Synology or QNAP.
What are the potential impacts of CVE-2025-54162?
The potential impacts of CVE-2025-54162 include unauthorized access to sensitive files and system data if exploited by an attacker.
Which versions are affected by CVE-2025-54162?
CVE-2025-54162 affects Synology File Station 5 versions prior to 5.5.6.5068 and QNAP File Station versions between 5.5.6.4691 and 5.5.6.5190.
Who is at risk from CVE-2025-54162?
Users of Synology and QNAP File Station who have administrator accounts are at risk from CVE-2025-54162 if they are running affected versions.