Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-25035

Опубликовано: 21 мар. 2025
Источник: nvd
CVSS3: 7.3
EPSS Низкий

Описание

Improper Neutralization of Input During Web Page Generation Cross-site Scripting vulnerability in Jalios JPlatform 10 allows for Reflected XSS and Stored XSS.This issue affects JPlatform 10: before 10.0.8 (SP8), before 10.0.7 (SP7), before 10.0.6 (SP6) and Jalios Workplace 6.2, Jalios Workplace 6.1, Jalios Workplace 6.0, and Jalios Workplace 5.3 to 5.5

EPSS

Процентиль: 29%
0.00108
Низкий

7.3 High

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.3
github
11 месяцев назад

Improper Neutralization of Input During Web Page Generation Cross-site Scripting vulnerability in Jalios JPlatform 10 allows for Reflected XSS and Stored XSS.This issue affects JPlatform 10: before 10.0.8 (SP8), before 10.0.7 (SP7), before 10.0.6 (SP6) and Jalios Workplace 6.2, Jalios Workplace 6.1, Jalios Workplace 6.0, and Jalios Workplace 5.3 to 5.5

EPSS

Процентиль: 29%
0.00108
Низкий

7.3 High

CVSS3

Дефекты

CWE-79