A vulnerability has been found in JAdmin-JAVA JAdmin 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /memoAjax/save. The manipulation of the argument ID leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
History

Fri, 10 Oct 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Jadmin-java
Jadmin-java jadmin
CPEs cpe:2.3:a:jadmin-java:jadmin:1.0:*:*:*:*:*:*:*
Vendors & Products Jadmin-java
Jadmin-java jadmin

Sat, 10 May 2025 02:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 10 May 2025 01:15:00 +0000

Type Values Removed Values Added
Description A vulnerability has been found in JAdmin-JAVA JAdmin 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /memoAjax/save. The manipulation of the argument ID leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Title JAdmin-JAVA JAdmin save cross site scripting
Weaknesses CWE-79
CWE-94
References
Metrics cvssV2_0

{'score': 4, 'vector': 'AV:N/AC:L/Au:S/C:N/I:P/A:N'}

cvssV3_0

{'score': 3.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N'}

cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-05-10T01:34:58.798Z

Reserved: 2025-05-09T12:12:31.757Z

Link: CVE-2025-4495

cve-icon Vulnrichment

Updated: 2025-05-10T01:34:52.560Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-10T01:15:51.637

Modified: 2025-10-10T18:00:28.087

Link: CVE-2025-4495

cve-icon Redhat

No data.