Cross-site scripting vulnerability has been identified in HPE Telco Service Activator product
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 04 Aug 2025 19:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79

Mon, 04 Aug 2025 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Hpe
Hpe telco Service Activator
Vendors & Products Hpe
Hpe telco Service Activator

Thu, 31 Jul 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 31 Jul 2025 19:30:00 +0000

Type Values Removed Values Added
Description Cross-site scripting vulnerability has been identified in HPE Telco Service Activator product
Title HPE Telco Service Activator, Protection Mechanism Failure
References
Metrics cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: hpe

Published:

Updated: 2025-08-04T18:30:39.560Z

Reserved: 2025-04-16T01:28:25.364Z

Link: CVE-2025-37109

cve-icon Vulnrichment

Updated: 2025-07-31T19:36:02.856Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-07-31T20:15:32.520

Modified: 2025-08-04T19:15:30.953

Link: CVE-2025-37109

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-08-04T09:00:52Z