CVE-2025-2150
CVE-2025-2150
Título es
CVE-2025-2150
Lun, 10/03/2025 – 08:15
Tipo
CWE-79
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2025-2150
Descripción en
The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular privileges to send emails containing malicious JavaScript code, which will be executed in the recipient's browser when they view the email.
10/03/2025
10/03/2025
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Gravedad 3.1 (CVSS 3.1 Base Score)
5.40
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
MEDIUM
Referencias
https://www.twcert.org.tw/en/cp-139-10005-05e0f-2.html
https://www.twcert.org.tw/tw/cp-132-10004-99474-1.html
Enviar en el boletín
Off
