Cross Site Scripting vulnerabilities in Xunruicms v.4.6.3 and before allows a remote attacker to escalate privileges via a crafted script.
This Cyber News was published on www.tenable.com. Publication date: Fri, 21 Feb 2025 22:56:03 +0000
Cyber News related to CVE-2025-25957
CVE-2025-25957 - Cross Site Scripting vulnerabilities in Xunruicms v.4.6.3 and before allows a remote attacker to escalate privileges via a crafted script. ...
9 months ago Tenable.com
CVE-2023-29129 - A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions > V1.17.3 < V1.18.0), Mendix SAML (Mendix 7 compatible) (All versions > V1.16.4 < V1.17.3), Mendix SAML (Mendix 8 compatible) (All versions > V2.3.0 ...
2 years ago
CVE-2021-25957 - In “Dolibarr” application, v2.8.1 to v13.0.2 are vulnerable to account takeover via password reset functionality. A low privileged attacker can reset the password of any user in the application using the password reset link the user received ...
4 years ago
CVE-2013-3106 - Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange AppSuite and Server before 6.20.7 rev18, 6.22.0 before rev16, 6.22.1 before rev19, 7.0.1 before rev7, 7.0.2 before rev11, and 7.2.0 before rev8 allow remote attackers to inject ...
12 years ago
CVE-2022-25957 - This candidate was in a CNA pool that was not assigned to any issues during 2022. ...
2 years ago
CVE-2023-25957 - A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions > V1.16.4 < V1.17.3), Mendix SAML (Mendix 8 compatible) (All versions > V2.2.0 < V2.3.0), Mendix SAML (Mendix 9 latest compatible, New Track) (All ...
2 years ago
CVE-2024-25957 - Dell Grab for Windows, versions 5.0.4 and below, contains a cleartext storage of sensitive information vulnerability in its appsync module. An authenticated local attacker could potentially exploit this vulnerability, leading to information ...
1 year ago