A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a malicious user to inject arbitrary HTML into the ENS HX Malware Scan Name field, resulting in the exposure of sensitive data.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://thrive.trellix.com/s/article/000014606 |
Configurations
No configuration.
History
03 Jul 2025, 15:14
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
01 Jul 2025, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-01 04:15
Updated : 2025-07-03 15:14
NVD link : CVE-2025-5967
Mitre link : CVE-2025-5967
CVE.ORG link : CVE-2025-5967
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')