CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. It may be remotely exploitable.
CVE
CVE-2018-25090
Severity
MEDIUM
CVSS
5.4
EPSS
0.40%
Original NVD Description
An unauthenticated remote attacker can use an XSS attack due to improper neutralization of input during web page generation. User interaction is required. This leads to a limited impact of confidentiality and integrity but no impact of availability.