An unauthenticated remote attacker can use an XSS attack due to improper neutralization of input during web page generation. User interaction is required. This leads to a limited impact of confidentiality and integrity but no impact of availability.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2023-039/ |
|
History
No history.
Status: PUBLISHED
Assigner: CERTVDE
Published: 2024-03-13T08:32:17.180Z
Updated: 2024-08-05T15:22:05.933Z
Reserved: 2023-09-14T13:00:21.075Z
Link: CVE-2018-25090
Updated: 2024-08-05T12:33:48.504Z
Status : Awaiting Analysis
Published: 2024-03-13T09:15:07.040
Modified: 2024-11-21T04:03:32.180
Link: CVE-2018-25090
No data.
ReportizFlow