CVE-2025-62853: File Station 5
A path traversal vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data.
We have already fixed the vulnerability in the following version: File Station 5 5.5.6.5166 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62853?
CVE-2025-62853 is classified as a high-severity vulnerability due to its potential for unauthorized file access.
How do I fix CVE-2025-62853?
To fix CVE-2025-62853, update to the latest version of Synology File Station 5 or QNAP File Station as specified in the security advisory.
Who is affected by CVE-2025-62853?
CVE-2025-62853 affects users of Synology File Station 5 versions prior to 5.5.6.5166 and QNAP File Station versions from 5.5.6.4691 to 5.5.6.5190.
What can attackers do with CVE-2025-62853?
An attacker with a user account can exploit CVE-2025-62853 to read sensitive files or system data stored on the affected devices.
When was CVE-2025-62853 reported?
CVE-2025-62853 was reported recently, highlighting a critical path traversal vulnerability in File Station 5.