7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Description
Missing authorization vulnerability in BeeDrive in Synology BeeDrive for desktop before 1.4.2-13960 allows remote attackers to delete arbitrary files via unspecified vectors.
Basic Information
ID
CVE-2025-54159
Source
synology
Published
Dec 4, 2025 at 15:13
Modified
Dec 4, 2025 at 20:01
Affected Product
Vendor
Synology
Product
BeeDrive for desktop
Version
*
Affected Versions
Synology BeeDrive for desktop *