Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-15987 | A vulnerability, which was classified as problematic, was found in HkCms up to 2.3.2.240702. This affects an unknown part of the file /index.php/search/index.html of the component Search. The manipulation of the argument keyword leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 17 Jun 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hkcms
Hkcms hkcms |
|
| CPEs | cpe:2.3:a:hkcms:hkcms:2.3.2.240702:*:*:*:*:*:*:* | |
| Vendors & Products |
Hkcms
Hkcms hkcms |
Wed, 21 May 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 21 May 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as problematic, was found in HkCms up to 2.3.2.240702. This affects an unknown part of the file /index.php/search/index.html of the component Search. The manipulation of the argument keyword leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | HkCms Search index.html cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-05-21T22:13:41.928Z
Reserved: 2025-05-20T16:02:33.101Z
Link: CVE-2025-5013
Updated: 2025-05-21T22:13:34.302Z
Status : Analyzed
Published: 2025-05-21T06:16:29.103
Modified: 2025-06-17T14:10:53.597
Link: CVE-2025-5013
No data.
OpenCVE Enrichment
No data.
EUVD