Security Advisory

CVE-2025-67443

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-22 00:00:00
Last updated 2025-12-22 17:01:28
Assigner mitre
State PUBLISHED

Description

Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.