Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-7661 | Group-Office is an enterprise CRM and groupware tool. This Stored XSS vulnerability exists where user input in the Name field is not properly sanitized before being stored. This vulnerability is fixed in 6.8.100. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 10 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Group-office
Group-office group Office |
|
| CPEs | cpe:2.3:a:group-office:group_office:6.8.99:*:*:*:*:*:*:* | |
| Vendors & Products |
Group-office
Group-office group Office |
|
| Metrics |
cvssV3_1
|
Thu, 06 Mar 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 06 Mar 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Group-Office is an enterprise CRM and groupware tool. This Stored XSS vulnerability exists where user input in the Name field is not properly sanitized before being stored. This vulnerability is fixed in 6.8.100. | |
| Title | Group-Office has a Stored XSS Vulnerability via user's name field | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-03-06T20:35:12.106Z
Reserved: 2025-02-03T19:30:53.399Z
Link: CVE-2025-25191
Updated: 2025-03-06T20:35:07.860Z
Status : Analyzed
Published: 2025-03-06T19:15:27.113
Modified: 2025-10-10T20:11:15.313
Link: CVE-2025-25191
No data.
OpenCVE Enrichment
No data.
EUVD