216.73.216.226

CVE-2025-27447

· Published 03/07/2025 12:15 · Modified 03/07/2025 15:13

Labels: CVE-2025-27447 2025-07-03CVE-2025-27447CWE-79[email protected]

Essential information

Published
03/07/2025 12:15
Modified
03/07/2025 15:13
Author
Creator
CVSS
7.4 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N

CVSS metrics

Description

The web application is susceptible to cross-site-scripting attacks. An attacker can create a prepared URL, which injects JavaScript code into the website. The code is executed in the victim’s browser when an authenticated administrator clicks the link.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
* / web application cpe:2.3:a:*:web_application:*:*:*:*:*:*:*:*

References