Beveiligingsadvies

CVE-2025-10909

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-09-24 16:32:06
Laatst bijgewerkt 2025-10-20 04:39:51
Toegewezen door VulDB
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A security flaw has been discovered in Mangati NovoSGA up to 2.2.9. The impacted element is an unknown function of the file /admin of the component SVG File Handler. Performing manipulation of the argument logoNavbar/logoLogin results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited.