CVE-2025-2150

Publication date

2025-03-10 07:12:22

Family

twcert

State

PUBLISHED

Description

The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular privileges to send emails containing malicious JavaScript code, which will be executed in the recipients browser when they view the email.