CVE-2025-12227: projectworlds Gate Pass Management System add-pass.php cross site scripting
A vulnerability was determined in projectworlds Gate Pass Management System 1.0. The affected element is an unknown function of the file /add-pass.php. Executing a manipulation can lead to cross site scripting. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12227?
CVE-2025-12227 is classified as a medium severity vulnerability due to its potential to allow remote cross-site scripting (XSS) attacks.
How do I fix CVE-2025-12227?
To fix CVE-2025-12227, you should sanitize and validate user input to prevent XSS vulnerabilities in the /add-pass.php file.
What software is affected by CVE-2025-12227?
CVE-2025-12227 affects Projectworlds Gate Pass Management System version 1.0.
Can CVE-2025-12227 be exploited remotely?
Yes, CVE-2025-12227 can be exploited remotely, making it critical to address immediately.
What type of vulnerability is CVE-2025-12227?
CVE-2025-12227 is a cross-site scripting (XSS) vulnerability.