First published: Fri Feb 07 2025(Updated: )
A vulnerability was found in SiberianCMS 4.20.6. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /app/sae/design/desktop/flat of the component HTTP GET Request Handler. The manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siberiancms |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1105 is rated as problematic.
CVE-2025-1105 affects the HTTP GET Request Handler within SiberianCMS.
CVE-2025-1105 is a cross site scripting vulnerability.
To mitigate CVE-2025-1105, ensure proper input validation and sanitization in the affected component.
CVE-2025-1105 affects SiberianCMS version 4.20.6.