CVE-2025-1985
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
26/05/2025
Last modified:
28/05/2025
Description
Due to improper neutralization of input during web page generation (XSS) an unauthenticated remote attacker can inject HTML code into the Web-UI in the affected device.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM