CVE-2025-64730: XSS
Published Nov 25, 2025
·Updated
Cross-site scripting vulnerability exists in SNC-CX600W all versions. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the product.
Affected Software
3 affected components
SNC CX600W=all
All of the following
Sony Snc-cx600w Firmware
Sony SNC-CX600W
Event History
Nov 25, 2025
CVE Published
via MITRE·04:37 AM
Data Sourced
via MITRE·04:37 AM
DescriptionSeverity
Data Sourced
via NVD·05:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-64730?
CVE-2025-64730 is considered a high severity vulnerability due to its potential to allow arbitrary script execution.
2
How do I fix CVE-2025-64730?
To mitigate CVE-2025-64730, ensure that your SNC-CX600W device is updated to the latest firmware version provided by the vendor.
3
What products are affected by CVE-2025-64730?
CVE-2025-64730 affects all versions of the SNC-CX600W product.
4
What is the nature of the vulnerability CVE-2025-64730?
CVE-2025-64730 is a cross-site scripting vulnerability that can execute arbitrary scripts in the user's web browser.
5
Who can exploit CVE-2025-64730?“
CVE-2025-64730 can be exploited by any user who accesses the vulnerable web interface of the SNC-CX600W device.