No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-8698 | This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
Github GHSA |
GHSA-xfqf-5rhg-5c73 | ConcreteCMS Cross-Site Scripting (XSS) via HTML Block Text Field |
No reference.
Fri, 04 Apr 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 CWE-94 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Fri, 04 Apr 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | ConcreteCMS HTML Block save HTML injection | |
| Metrics |
ssvc
|
Fri, 04 Apr 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in ConcreteCMS up to 9.3.9. It has been classified as problematic. This affects the function Save of the component HTML Block Handler. The manipulation of the argument content leads to HTML injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| Metrics |
cvssV3_0
|
cvssV4_0
|
Mon, 31 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 31 Mar 2025 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in ConcreteCMS up to 9.3.9. It has been classified as problematic. This affects the function Save of the component HTML Block Handler. The manipulation of the argument content leads to HTML injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | ConcreteCMS HTML Block save HTML injection | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Subscriptions
No data.
Status: REJECTED
Assigner: VulDB
Published:
Updated: 2025-04-04T00:09:05.813Z
Reserved: 2025-03-30T07:15:56.194Z
Link: CVE-2025-2967
Updated:
Status : Rejected
Published: 2025-03-31T01:15:40.113
Modified: 2025-04-04T01:15:39.857
Link: CVE-2025-2967
No data.
OpenCVE Enrichment
No data.
No weakness.
EUVD
Github GHSA