CVE-2025-69268: Spectrum reflected XSS
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Reflected XSS.This issue affects DX NetOps Spectrum: 24.3.8 and earlier.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-69268?
CVE-2025-69268 is classified as a moderate severity vulnerability due to its potential for reflected cross-site scripting (XSS) in the affected software.
How do I fix CVE-2025-69268?
To mitigate CVE-2025-69268, upgrade Broadcom DX NetOps Spectrum to version 24.3.9 or later where the vulnerability has been addressed.
What versions of software are affected by CVE-2025-69268?
CVE-2025-69268 affects Broadcom DX NetOps Spectrum versions 24.3.8 and earlier.
What type of vulnerability is CVE-2025-69268?
CVE-2025-69268 is an improper neutralization of input vulnerability, which allows for reflected cross-site scripting (XSS) attacks.
How can attackers exploit CVE-2025-69268?
Attackers can exploit CVE-2025-69268 by injecting malicious scripts into web pages generated by the affected versions, potentially affecting users who visit the compromised pages.