CVE-2025-59772 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's b…
Medium CVSS: 5.1

CVE-2025-59772

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and SuppConn' parameters in '/clt/LOGINFRM_SIL.ASP'.
Vendor
Andsoft
Product
E-tms
CWE
CWE-79
Yayın Tarihi
2025-10-02 15:15:58
Güncelleme
2025-10-02 19:53:15
Source Identifier
cve-coordination@incibe.es
KEV Date Added
-

Kategoriler

Referanslar