CVE-2025-1208: code-projects Wazifa System Profile.php cross site scripting
A vulnerability was found in code-projects Wazifa System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /Profile.php. The manipulation of the argument postcontent leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1208?
CVE-2025-1208 has been rated as problematic.
How do I fix CVE-2025-1208?
To fix CVE-2025-1208, ensure that any user-supplied input, particularly in the postcontent argument, is properly sanitized to prevent cross site scripting.
What component is affected by CVE-2025-1208?
CVE-2025-1208 affects the '/Profile.php' file within the Wazifa System.
What type of vulnerability is CVE-2025-1208?
CVE-2025-1208 is classified as a cross site scripting (XSS) vulnerability.
Can CVE-2025-1208 be exploited remotely?
Yes, the attack related to CVE-2025-1208 may be initiated remotely.