Security Advisory

CVE-2025-4989

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-30 14:19:03
Last updated 2025-05-30 22:00:14
Assigner 3DS
State PUBLISHED

Description

A stored Cross-site Scripting (XSS) vulnerability affecting Requirements in Product Manager from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in users browser session.