CVE-2025-54346
—CVSS 3.1
7.6 high
EPSS
<1%p17
Published
()
Modified
Description
A Reflected Cross Site Scripting (XSS) vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows an attacker to hijack user’s browser, capturing sensitive information.
- Vendors
- desktopalert
- Products
- pingalert application server
- Weakness
- CWE-80
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H
In the news0 stories
No ingested article mentions this CVE yet.