Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-20796 | A security bypass vulnerability allows exploitation via Reverse Tabnabbing, a type of phishing attack where attackers can manipulate the content of the original tab, leading to credential theft and other security risks. This issue affects DataSync Center: from 1.1.0 before 1.1.0.r207, and from 1.2.0 before 1.2.0.r206. |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 09 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Jul 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in ASUSTOR ADM DataSync Center on Linux, x86, ARM, 64 bit allows Phishing.This issue affects ADM: from 1.1.0 before 1.1.0.R207, from 1.2.0 before 1.2.0.R207. | A security bypass vulnerability allows exploitation via Reverse Tabnabbing, a type of phishing attack where attackers can manipulate the content of the original tab, leading to credential theft and other security risks. This issue affects DataSync Center: from 1.1.0 before 1.1.0.r207, and from 1.2.0 before 1.2.0.r206. |
Wed, 09 Jul 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in ASUSTOR ADM DataSync Center on Linux, x86, ARM, 64 bit allows Phishing.This issue affects ADM: from 1.1.0 before 1.1.0.R207, from 1.2.0 before 1.2.0.R207. | |
| Title | A security bypass vulnerability was found in DataSync Center installed on ADM | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ASUSTOR1
Published:
Updated: 2025-07-09T13:41:06.585Z
Reserved: 2025-07-09T06:11:58.712Z
Link: CVE-2025-7379
Updated: 2025-07-09T13:41:02.410Z
Status : Deferred
Published: 2025-07-09T09:15:27.703
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-7379
No data.
OpenCVE Enrichment
Updated: 2025-07-13T22:31:24Z
EUVD