CVE-2025-25949
A stored cross-site scripting (XSS) vulnerability in Serosoft Solutions Pvt Ltd Academia Student Information System (SIS) EagleR v1.0.118 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the User ID parameter at /rest/staffResource/update.
Vendor
Product
CWE
Yayın Tarihi
2025-03-03 01:15:11
Güncelleme
2026-01-29 02:05:27
Source Identifier
cve@mitre.org
KEV Date Added
-