A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in spacewalk-java allows execution of arbitrary Javascript code on users machines.This issue affects Container suse/manager/5.0/x86_64/server:5.0.4.7.19.1: from ? before 5.0.24-150600.3.25.1; SUSE Manager Server Module 4.3: from ? before 4.3.85-150400.3.105.3.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-23393 |
![]() ![]() |
History
Tue, 27 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 27 May 2025 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in spacewalk-java allows execution of arbitrary Javascript code on users machines.This issue affects Container suse/manager/5.0/x86_64/server:5.0.4.7.19.1: from ? before 5.0.24-150600.3.25.1; SUSE Manager Server Module 4.3: from ? before 4.3.85-150400.3.105.3. | |
Title | Reflected XSS in spacewalk-java | |
Weaknesses | CWE-80 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: suse
Published: 2025-05-27T07:23:39.008Z
Updated: 2025-05-27T14:02:53.589Z
Reserved: 2025-01-15T12:39:03.324Z
Link: CVE-2025-23393

Updated: 2025-05-27T14:02:46.849Z

Status : Awaiting Analysis
Published: 2025-05-27T08:15:19.390
Modified: 2025-05-28T15:01:30.720
Link: CVE-2025-23393

No data.