CVE-2025-54348 - CERT CVE
ID CVE-2025-54348
Sažetak A Stored Cross Site Scripting (XSS) vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows an attacker to hijack user’s browser, capturing sensitive information.
Reference
CVSS
Base: 6.5
Impact: 3.7
Exploitability:2.3
Pristup
VektorSloženostAutentikacija
NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW LOW
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Zadnje važnije ažuriranje 14-11-2025 - 19:16
Objavljeno 14-11-2025 - 18:15