CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.7. See the original NVD description below for full technical details.
CVE
CVE-2025-4985
Severity
HIGH
CVSS
8.7
EPSS
0.27%
Original NVD Description
A stored Cross-site Scripting (XSS) vulnerability affecting Risk Management in Project Portfolio Manager from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in user's browser session.