Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting'), Improper Restriction of Rendered UI Layers or Frames vulnerability in Mevzuattr Software MevzuatTR allows Phishing, iFrame Overlay, Clickjacking, Forceful Browsing. This issue needs high privileges. This issue affects MevzuatTR: before 12.02.2025.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://www.usom.gov.tr/bildirim/tr-25-0269 |
![]() ![]() |
History
Wed, 17 Sep 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 17 Sep 2025 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting'), Improper Restriction of Rendered UI Layers or Frames vulnerability in Mevzuattr Software MevzuatTR allows Phishing, iFrame Overlay, Clickjacking, Forceful Browsing. This issue needs high privileges. This issue affects MevzuatTR: before 12.02.2025. | |
Title | XSS in Mevzuattr Software's MevzuatTR | |
Weaknesses | CWE-1021 CWE-79 |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2025-09-17T13:08:06.681Z
Reserved: 2025-01-17T13:47:20.099Z
Link: CVE-2025-0546

Updated: 2025-09-17T13:08:03.278Z

Status : Awaiting Analysis
Published: 2025-09-17T12:15:37.590
Modified: 2025-09-17T14:18:55.093
Link: CVE-2025-0546

No data.

No data.