An unauthenticated remote attacker can use an XSS attack due to improper neutralization of input during web page generation. User interaction is required. This leads to a limited impact of confidentiality and integrity but no impact of availability.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-08-05T15:22:05.933Z
Reserved: 2023-09-14T13:00:21.075Z
Link: CVE-2018-25090
Updated: 2024-08-05T12:33:48.504Z
Status : Deferred
Published: 2024-03-13T09:15:07.040
Modified: 2026-04-15T00:35:42.020
Link: CVE-2018-25090
No data.