Metrics
Affected Vendors & Products
Sun, 13 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Wed, 12 Feb 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 02 Feb 2025 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Zenvia Movidesk up to 25.01.22. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /Account/EditProfile of the component Profile Editing. The manipulation of the argument username leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 25.01.22.245a473c54 is able to address this issue. It is recommended to upgrade the affected component. | |
Title | Zenvia Movidesk Profile Editing EditProfile cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-02-02T23:31:03.808Z
Updated: 2025-02-12T20:41:38.405Z
Reserved: 2025-02-02T07:54:47.521Z
Link: CVE-2025-0971

Updated: 2025-02-12T20:40:47.217Z

Status : Received
Published: 2025-02-03T00:15:27.797
Modified: 2025-02-03T00:15:27.797
Link: CVE-2025-0971

No data.