CVE-2025-0599: Stored Cross-site Scripting (XSS) vulnerability affecting Document Management in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x
A stored Cross-site Scripting (XSS) vulnerability affecting Document Management in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0599?
CVE-2025-0599 is classified as a high severity stored Cross-site Scripting (XSS) vulnerability.
How do I fix CVE-2025-0599?
To fix CVE-2025-0599, update to the latest version of Dassault Systèmes ENOVIA Collaborative Industry Innovator that addresses this vulnerability.
Who is affected by CVE-2025-0599?
CVE-2025-0599 affects users of ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x.
What is the impact of CVE-2025-0599?
The impact of CVE-2025-0599 allows attackers to execute arbitrary scripts in the context of a user's browser session.
Is there a workaround for CVE-2025-0599?
As of now, there are no official workarounds for CVE-2025-0599; applying the suggested updates is the best course of action.