7.8
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Missing authentication for critical function vulnerability in BeeDrive in Synology BeeDrive for desktop before 1.4.2-13960 allows local users to execute arbitrary code via unspecified vectors.
Basic Information
ID
CVE-2025-54158
Source
synology
Published
Dec 4, 2025 at 15:13
Modified
Dec 4, 2025 at 20:01
Affected Product
Vendor
Synology
Product
BeeDrive for desktop
Version
*
Affected Versions
Synology BeeDrive for desktop *