Metrics
Affected Vendors & Products
Tue, 25 Nov 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eigenfocus
Eigenfocus eigenfocus |
|
| Vendors & Products |
Eigenfocus
Eigenfocus eigenfocus |
Mon, 24 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Nov 2025 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in Eigenfocus up to 1.4.0. This vulnerability affects unknown code of the component Description Handler. The manipulation of the argument entry.description/time_entry.description leads to cross site scripting. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 1.4.1 is able to resolve this issue. The identifier of the patch is 7dec94c9d1f3e513e0ee38ba68caaba628e08582. Upgrading the affected component is advised. | |
| Title | Eigenfocus Description cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-11-24T21:35:43.064Z
Reserved: 2025-11-23T09:53:48.827Z
Link: CVE-2025-13584
Updated: 2025-11-24T21:35:40.099Z
Status : Received
Published: 2025-11-24T05:16:04.557
Modified: 2025-11-24T05:16:04.557
Link: CVE-2025-13584
No data.