CVE Explorer
CVE-2025-7699
An improper access control vulnerability was found in the EZ Sync Manager of ADM, which allows authenticated users to copy arbitrary files from the server file system into their own EZSync folder. The vulnerability is due to a lack of authorization checks on the file parameter of the HTTP request. Attackers can exploit this flaw to access files outside their authorized scope, provided the file has readable permissions for other users on the underlying OS. This can lead to unauthorized exposure
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","packageName":"EZ Sync Manager","platforms":["Linux","x86","ARM","64 bit"],"product":"ADM","vendor":"ASUSTOR","versions":[{"lessThanOrEqual":"4.3.3.RH61","status":"affected","version":"4.1.0","versionType":"custom"},{"lessThanOrEqual":"5.0.0.RIN1","status":"affected","version":"5.0.0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:da0102ec098f9317741bfe10cf86752c4ce92e6651bd670d6cd9656d47a34391 · sha256:4545358e066688a6… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"NETWORK","baseScore":7.1,"baseSeverity":"HIGH","privilegesRequired":"LOW","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","userInteraction":"NONE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N","version":"4.0","vulnAvailabilityImpact":"NONE","vulnConfidentialityImpact":"HIGH","vulnIntegrityImpact":"NONE…
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:da0102ec098f9317741bfe10cf86752c4ce92e6651bd670d6cd9656d47a34391 · sha256:4545358e066688a6… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-287","description":"CWE-287 Improper Authentication","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:da0102ec098f9317741bfe10cf86752c4ce92e6651bd670d6cd9656d47a34391 · sha256:4545358e066688a6… · /containers/cna/problemTypes/0/descriptions/0
Source references
1 source assertion{"tags":["vendor-advisory"],"url":"https://www.asustor.com/security/security_advisory_detail?id=46"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:da0102ec098f9317741bfe10cf86752c4ce92e6651bd670d6cd9656d47a34391 · sha256:4545358e066688a6… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.