CVE-2025-9388: Scada-LTS watch_list.shtm cross site scripting
A vulnerability was determined in Scada-LTS up to 2.7.8.1. This impacts an unknown function of the file watchlist.shtm. Executing manipulation of the argument Name can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9388?
CVE-2025-9388 is classified as a critical vulnerability due to its potential for remote exploitation and cross-site scripting.
How do I fix CVE-2025-9388?
To fix CVE-2025-9388, upgrade Scada-LTS to a version beyond 2.7.8.1 to mitigate the cross-site scripting vulnerability.
What software is affected by CVE-2025-9388?
CVE-2025-9388 affects Scada-LTS versions up to and including 2.7.8.1.
What type of attack does CVE-2025-9388 allow?
CVE-2025-9388 allows for remote cross-site scripting attacks through manipulation of the argument Name in watch_list.shtm.
Is CVE-2025-9388 publicly disclosed?
Yes, CVE-2025-9388 has been publicly disclosed, indicating awareness within the cybersecurity community.