Description
A stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-6590 | A stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. |
References
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
History
Wed, 22 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
3ds
3ds 3dexperience Enovia |
|
| CPEs | cpe:2.3:a:3ds:3dexperience_enovia:r2024x:*:*:*:*:*:*:* | |
| Vendors & Products |
3ds
3ds 3dexperience Enovia |
Mon, 17 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 17 Mar 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | |
| Title | Stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2025-03-17T16:31:16.967Z
Reserved: 2025-01-20T08:34:31.972Z
Link: CVE-2025-0596
Updated: 2025-03-17T14:16:45.440Z
Status : Analyzed
Published: 2025-03-17T14:15:20.143
Modified: 2025-10-22T16:28:30.537
Link: CVE-2025-0596
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD