Beveiligingsadvies

CVE-2025-23587

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-03 13:30:13
Laatst bijgewerkt 2026-04-28 16:11:13
Toegewezen door Patchstack
CVSS-score 7.1
Status PUBLISHED

Beschrijving

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ashek Al Mahmud all-in-one-box-login all-in-one-login allows Reflected XSS.This issue affects all-in-one-box-login: from n/a through <= 2.0.1.