Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-2150

Опубликовано: 10 мар. 2025
Источник: nvd
CVSS3: 5.4
EPSS Низкий

Описание

The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular privileges to send emails containing malicious JavaScript code, which will be executed in the recipient's browser when they view the email.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hgiga:c\&cm\@il:-:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00062
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
github
11 месяцев назад

The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular privileges to send emails containing malicious JavaScript code, which will be executed in the recipient's browser when they view the email.

EPSS

Процентиль: 19%
0.00062
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79