Логотип exploitDog
bind:CVE-2025-54856
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-54856

Количество 4

Количество 4

ubuntu логотип

CVE-2025-54856

4 месяца назад

Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2025-54856

4 месяца назад

Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2025-54856

4 месяца назад

Movable Type contains a stored cross-site scripting vulnerability in E ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-4wvq-85hg-6256

4 месяца назад

Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-54856

Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.

CVSS3: 4.8
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-54856

Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.

CVSS3: 4.8
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-54856

Movable Type contains a stored cross-site scripting vulnerability in E ...

CVSS3: 4.8
0%
Низкий
4 месяца назад
github логотип
GHSA-4wvq-85hg-6256

Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.

CVSS3: 4.8
0%
Низкий
4 месяца назад

Уязвимостей на страницу