A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability allows attackers to run arbitrary javascript via a reflected XSS issue in the search fields.This issue affects Container suse/manager/5.0/x86_64/server:latest: from ? before 5.0.28-150600.3.36.8; SUSE Manager Server LTS 4.3: from ? before 4.3.88-150400.3.113.5.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-53883 | 
                     | 
            
History
                    Thu, 30 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Suse
         Suse manager Suse manager Server  | 
|
| Vendors & Products | 
        
        Suse
         Suse manager Suse manager Server  | 
Thu, 30 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Thu, 30 Oct 2025 11:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability allows attackers to run arbitrary javascript via a reflected XSS issue in the search fields.This issue affects Container suse/manager/5.0/x86_64/server:latest: from ? before 5.0.28-150600.3.36.8; SUSE Manager Server LTS 4.3: from ? before 4.3.88-150400.3.113.5. | |
| Title | spacewalk-java has various XSS issues on search page | |
| Weaknesses | CWE-80 | |
| References | 
         | |
| Metrics | 
        
        cvssV4_0
         
  | 
Status: PUBLISHED
Assigner: suse
Published: 2025-10-30T10:50:07.580Z
Updated: 2025-10-31T03:55:20.245Z
Reserved: 2025-07-11T10:53:52.681Z
Link: CVE-2025-53883
Updated: 2025-10-30T13:16:13.031Z
Status : Awaiting Analysis
Published: 2025-10-30T11:15:33.280
Modified: 2025-10-30T15:03:13.440
Link: CVE-2025-53883
No data.
ReportizFlow