CyberRota
← Ana sayfaya dön

CVE-2025-0152

MEDIUM · CVSS 6.1

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-30T19:16:57.910 · Çekilme zamanı: 2026-07-31T06:07:05.612748+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2025-0152
Severity
MEDIUM
CVSS
6.1
EPSS
Yok
Java

Orijinal NVD Açıklaması

IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.13 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.