Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-2597

Опубликовано: 21 мар. 2025
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

Reflected Cross-Site Scripting (XSS) in ITIUM 6050 version 5.5.5.2-b3526 from Impact Technologies. This vulnerability could allow an attacker to execute malicious Javascript code via GET and POST requests to the ‘/index.php’ endpoint and injecting code into the ‘id_session.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:itechno:itium_6050_firmware:5.5.5.2-b3526:*:*:*:*:*:*:*
cpe:2.3:h:itechno:itium_6050:*:*:*:*:*:*:*:*

EPSS

Процентиль: 22%
0.00071
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
github
11 месяцев назад

Reflected Cross-Site Scripting (XSS) in ITIUM 6050 version 5.5.5.2-b3526 from Impact Technologies. This vulnerability could allow an attacker to execute malicious Javascript code via GET and POST requests to the ‘/index.php’ endpoint and injecting code into the ‘id_session.

EPSS

Процентиль: 22%
0.00071
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79