CVE-2025-62855: File Station 5
A path traversal vulnerability has been reported to affect File Station 5. If a local attacker gains an administrator account, they can then exploit the vulnerability to read the contents of unexpected files or system data.
We have already fixed the vulnerability in the following version: File Station 5 5.5.6.5190 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62855?
CVE-2025-62855 has a high severity rating due to the potential for unauthorized file access and data exposure.
How do I fix CVE-2025-62855?
To fix CVE-2025-62855, update File Station 5 to the latest version as provided in the vendor's security advisory.
What systems are affected by CVE-2025-62855?
CVE-2025-62855 affects Synology File Station 5 versions up to 5.5.6.5190 and QNAP File Station versions between 5.5.6.4691 and 5.5.6.5190.
Who can exploit CVE-2025-62855?
CVE-2025-62855 can be exploited by local attackers who have gained administrator access to the affected systems.
What is the risk associated with CVE-2025-62855?
The risk associated with CVE-2025-62855 includes potential exposure of sensitive data and system files, which can lead to further attacks.