First published: Fri Apr 04 2025(Updated: )
A vulnerability, which was classified as problematic, was found in xujiangfei admintwo 1.0. This affects an unknown part of the file /user/updateSet. The manipulation of the argument motto leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
xujiangfei admintwo |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-3251 has been classified as problematic due to its potential for exploitation via cross site scripting.
CVE-2025-3251 is a cross site scripting (XSS) vulnerability that can be exploited remotely.
To fix CVE-2025-3251, ensure proper input validation and sanitization for the 'motto' argument in the /user/updateSet file.
CVE-2025-3251 affects xujiangfei admintwo version 1.0.
Yes, CVE-2025-3251 can be exploited remotely by manipulating the 'motto' argument.