Security Advisory
CVE-2025-8319
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
the BMA login interface allows arbitrary JavaScript or HTML to be written straight into the page’s Document Object Model via the error= URL parameter