CVE-2025-53519: Advantech iView Cross-site Scripting
A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site scripting (XSS) attack. By manipulating specific parameters, an attacker could execute unauthorized scripts in the user's browser, potentially leading to information disclosure or other malicious activities.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53519?
CVE-2025-53519 is considered a medium severity vulnerability due to its potential for reflected cross-site scripting (XSS) attacks.
How do I fix CVE-2025-53519?
To fix CVE-2025-53519, upgrade Advantech iView to version 5.7.05 build 7057 or later.
What types of attacks could CVE-2025-53519 enable?
CVE-2025-53519 could enable reflected cross-site scripting (XSS) attacks, allowing unauthorized script execution in users' browsers.
Which versions of Advantech iView are affected by CVE-2025-53519?
CVE-2025-53519 affects all versions of Advantech iView prior to 5.7.05 build 7057.
Who is the vendor for the affected product in CVE-2025-53519?
The vendor for the affected product in CVE-2025-53519 is Advantech.