ZeroHour

CVE-2025-51503

CVSS 3.1
7.6 high
EPSS
<1%p40
Published
()
Modified
Description

A Stored Cross-Site Scripting (XSS) vulnerability in Microweber CMS 2.0 allows attackers to inject malicious scripts into user profile fields, leading to arbitrary JavaScript execution in admin browsers.

Vendors
microweber
Products
microweber
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L

In the news

No ingested article mentions this CVE yet.