CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. It affects Java. It may be remotely exploitable.
CVE
CVE-2025-3448
Severity
MEDIUM
CVSS
6.1
EPSS
0.25%
Java
Original NVD Description
Reflected cross-site scripting (XSS) vulnerabilities exist in System Diagnostics Manager (SDM) of B&R Automation Runtime versions before 6.4 that enables a remote attacker to execute arbitrary JavaScript code in the context of the attacked user’s browser session