ZeroHour

CVE-2025-56289

CVSS 3.1
5.4 medium
EPSS
<1%p6
Published
()
Modified
Description

code-projects Document Management System 1.0 has a Cross Site Scripting (XSS) vulnerability, where attackers can leak admin's cookie information by entering malicious XSS code in the Company field when adding files.

Vendors
fabian
Products
document management system
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.