Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-8116

Опубликовано: 30 сент. 2025
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

PAD CMS is vulnerable to Reflected XSS in printing and save to PDF functionality. Malicious attacker can craft special URL, which will result in arbitrary JavaScript execution in victim's browser, when opened. This issue affects all 3 templates: www, bip and www+bip.

This product is End-Of-Life and producent will not publish patches for this vulnerability.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:widzialni:pad_cms:*:*:*:*:*:*:*:*
Версия до 1.2.1 (включая)

EPSS

Процентиль: 16%
0.00049
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
github
4 месяца назад

PAD CMS is vulnerable to Reflected XSS in printing and save to PDF functionality. Malicious attacker can craft special URL, which will result in arbitrary JavaScript execution in victim's browser, when opened. This issue affects all 3 templates: www, bip and www+bip. This product is End-Of-Life and producent will not publish patches for this vulnerability.

EPSS

Процентиль: 16%
0.00049
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79