PT-2025-24308 · Synology · File Station

Coral

·

Published

2025-06-06

·

Updated

2025-09-17

·

CVE-2025-33035

CVSS v4.0

7.2

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions File Station 5 versions prior to 5.5.6.4847
Description A path traversal issue has been reported, allowing a remote attacker with a user account to read the contents of unexpected files or system data.
Recommendations For versions prior to 5.5.6.4847, update to version 5.5.6.4847 or later to resolve the issue.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-33035

Affected Products

File Station