CVE-2025-54169: File Station 5
Published Feb 11, 2026
·Updated
An out-of-bounds read vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to obtain secret data.
We have already fixed the vulnerability in the following version: File Station 5 5.5.6.5068 and later
Affected Software
2 affected components
Synology File Station 5<5.5.6.5068
QNAP File Station>=5.5.6.4691<5.5.6.5190
Remediation
Information
We have already fixed the vulnerability in the following version:
File Station 5 5.5.6.5068 and later
Event History
Feb 11, 2026
CVE Published
via MITRE·12:17 PM
Data Sourced
via MITRE·12:17 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 27, 58088
Event
via NVD·12:05 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-54169?
CVE-2025-54169 is classified as a high severity vulnerability due to its potential for remote data exploitation.
2
How do I fix CVE-2025-54169?
To fix CVE-2025-54169, you should update File Station 5 to version 5.5.6.5068 or higher.
3
Which versions of File Station are affected by CVE-2025-54169?
File Station versions below 5.5.6.5068 are affected by CVE-2025-54169.
4
What type of vulnerability is CVE-2025-54169?
CVE-2025-54169 is an out-of-bounds read vulnerability.
5
Can CVE-2025-54169 be exploited remotely?
Yes, CVE-2025-54169 can be exploited remotely if an attacker gains access to a user account.