First published: Mon Mar 31 2025(Updated: )
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Credit: ff5b8ace-8b95-4078-9743-eac1ca5451de
Affected Software | Affected Version | How to fix |
---|---|---|
ConcreteCMS | <=9.3.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2972 is classified as a problematic vulnerability.
CVE-2025-2972 affects the Page Attribute Display Block Handler component in ConcreteCMS.
CVE-2025-2972 is a cross-site scripting (XSS) vulnerability.
To fix CVE-2025-2972, update ConcreteCMS to a version later than 9.3.9.
ConcreteCMS versions up to and including 9.3.9 are affected by CVE-2025-2972.