Description
A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a malicious user to inject arbitrary HTML into the ENS HX Malware Scan Name field, resulting in the exposure of sensitive data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28699 | A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a malicious user to inject arbitrary HTML into the ENS HX Malware Scan Name field, resulting in the exposure of sensitive data. |
References
| Link | Providers |
|---|---|
| https://thrive.trellix.com/s/article/000014606 |
|
History
Tue, 01 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 01 Jul 2025 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a malicious user to inject arbitrary HTML into the ENS HX Malware Scan Name field, resulting in the exposure of sensitive data. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: trellix
Published:
Updated: 2025-07-01T13:12:52.297Z
Reserved: 2025-06-10T09:40:39.945Z
Link: CVE-2025-5967
Updated: 2025-07-01T13:12:49.013Z
Status : Deferred
Published: 2025-07-01T04:15:34.137
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-5967
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD