Description
The Mozart FM Transmitter web management interface on version WEBMOZZI-00287, contains a reflected Cross-Site Scripting (XSS) vulnerability in the /main0.php endpoint. By injecting a malicious JavaScript payload into the ?m= query parameter, an attacker can execute arbitrary code in the victim's browser, potentially stealing sensitive information, hijacking sessions, or performing unauthorized actions.
Published: 2025-11-18
Score: 5.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 06 Dec 2025 00:30:00 +0000

Type Values Removed Values Added
First Time appeared Dbbroadcast mozart Dds Next 100
Dbbroadcast mozart Dds Next 1000
Dbbroadcast mozart Dds Next 1000 Firmware
Dbbroadcast mozart Dds Next 100 Firmware
Dbbroadcast mozart Dds Next 2000
Dbbroadcast mozart Dds Next 2000 Firmware
Dbbroadcast mozart Dds Next 30
Dbbroadcast mozart Dds Next 300
Dbbroadcast mozart Dds Next 3000
Dbbroadcast mozart Dds Next 3000 Firmware
Dbbroadcast mozart Dds Next 300 Firmware
Dbbroadcast mozart Dds Next 30 Firmware
Dbbroadcast mozart Dds Next 3500
Dbbroadcast mozart Dds Next 3500 Firmware
Dbbroadcast mozart Dds Next 50
Dbbroadcast mozart Dds Next 500
Dbbroadcast mozart Dds Next 500 Firmware
Dbbroadcast mozart Dds Next 50 Firmware
Dbbroadcast mozart Dds Next 6000
Dbbroadcast mozart Dds Next 6000 Firmware
Dbbroadcast mozart Dds Next 7000
Dbbroadcast mozart Dds Next 7000 Firmware
Dbbroadcast mozart Next 100
Dbbroadcast mozart Next 1000
Dbbroadcast mozart Next 1000 Firmware
Dbbroadcast mozart Next 100 Firmware
Dbbroadcast mozart Next 2000
Dbbroadcast mozart Next 2000 Firmware
Dbbroadcast mozart Next 30
Dbbroadcast mozart Next 300
Dbbroadcast mozart Next 3000
Dbbroadcast mozart Next 3000 Firmware
Dbbroadcast mozart Next 300 Firmware
Dbbroadcast mozart Next 30 Firmware
Dbbroadcast mozart Next 3500
Dbbroadcast mozart Next 3500 Firmware
Dbbroadcast mozart Next 50
Dbbroadcast mozart Next 500
Dbbroadcast mozart Next 500 Firmware
Dbbroadcast mozart Next 50 Firmware
Dbbroadcast mozart Next 6000
Dbbroadcast mozart Next 6000 Firmware
Dbbroadcast mozart Next 7000
Dbbroadcast mozart Next 7000 Firmware
CPEs cpe:2.3:h:dbbroadcast:mozart_dds_next_1000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_100:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_2000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_3000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_300:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_30:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_3500:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_500:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_50:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_6000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_dds_next_7000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_1000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_100:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_2000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_3000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_300:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_30:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_3500:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_500:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_50:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_6000:-:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:mozart_next_7000:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_2000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_3000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_300_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_30_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_3500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_50_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_6000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_dds_next_7000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_2000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_3000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_300_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_30_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_3500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_500_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_50_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_6000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:mozart_next_7000_firmware:-:*:*:*:*:*:*:*
Vendors & Products Dbbroadcast mozart Dds Next 100
Dbbroadcast mozart Dds Next 1000
Dbbroadcast mozart Dds Next 1000 Firmware
Dbbroadcast mozart Dds Next 100 Firmware
Dbbroadcast mozart Dds Next 2000
Dbbroadcast mozart Dds Next 2000 Firmware
Dbbroadcast mozart Dds Next 30
Dbbroadcast mozart Dds Next 300
Dbbroadcast mozart Dds Next 3000
Dbbroadcast mozart Dds Next 3000 Firmware
Dbbroadcast mozart Dds Next 300 Firmware
Dbbroadcast mozart Dds Next 30 Firmware
Dbbroadcast mozart Dds Next 3500
Dbbroadcast mozart Dds Next 3500 Firmware
Dbbroadcast mozart Dds Next 50
Dbbroadcast mozart Dds Next 500
Dbbroadcast mozart Dds Next 500 Firmware
Dbbroadcast mozart Dds Next 50 Firmware
Dbbroadcast mozart Dds Next 6000
Dbbroadcast mozart Dds Next 6000 Firmware
Dbbroadcast mozart Dds Next 7000
Dbbroadcast mozart Dds Next 7000 Firmware
Dbbroadcast mozart Next 100
Dbbroadcast mozart Next 1000
Dbbroadcast mozart Next 1000 Firmware
Dbbroadcast mozart Next 100 Firmware
Dbbroadcast mozart Next 2000
Dbbroadcast mozart Next 2000 Firmware
Dbbroadcast mozart Next 30
Dbbroadcast mozart Next 300
Dbbroadcast mozart Next 3000
Dbbroadcast mozart Next 3000 Firmware
Dbbroadcast mozart Next 300 Firmware
Dbbroadcast mozart Next 30 Firmware
Dbbroadcast mozart Next 3500
Dbbroadcast mozart Next 3500 Firmware
Dbbroadcast mozart Next 50
Dbbroadcast mozart Next 500
Dbbroadcast mozart Next 500 Firmware
Dbbroadcast mozart Next 50 Firmware
Dbbroadcast mozart Next 6000
Dbbroadcast mozart Next 6000 Firmware
Dbbroadcast mozart Next 7000
Dbbroadcast mozart Next 7000 Firmware

Fri, 21 Nov 2025 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Dbbroadcast
Dbbroadcast mozart Fm Transmitter
Vendors & Products Dbbroadcast
Dbbroadcast mozart Fm Transmitter

Wed, 19 Nov 2025 14:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 18 Nov 2025 21:00:00 +0000

Type Values Removed Values Added
Description The Mozart FM Transmitter web management interface on version WEBMOZZI-00287, contains a reflected Cross-Site Scripting (XSS) vulnerability in the /main0.php endpoint. By injecting a malicious JavaScript payload into the ?m= query parameter, an attacker can execute arbitrary code in the victim's browser, potentially stealing sensitive information, hijacking sessions, or performing unauthorized actions.
References

Subscriptions

Dbbroadcast Mozart Dds Next 100 Mozart Dds Next 1000 Mozart Dds Next 1000 Firmware Mozart Dds Next 100 Firmware Mozart Dds Next 2000 Mozart Dds Next 2000 Firmware Mozart Dds Next 30 Mozart Dds Next 300 Mozart Dds Next 3000 Mozart Dds Next 3000 Firmware Mozart Dds Next 300 Firmware Mozart Dds Next 30 Firmware Mozart Dds Next 3500 Mozart Dds Next 3500 Firmware Mozart Dds Next 50 Mozart Dds Next 500 Mozart Dds Next 500 Firmware Mozart Dds Next 50 Firmware Mozart Dds Next 6000 Mozart Dds Next 6000 Firmware Mozart Dds Next 7000 Mozart Dds Next 7000 Firmware Mozart Fm Transmitter Mozart Next 100 Mozart Next 1000 Mozart Next 1000 Firmware Mozart Next 100 Firmware Mozart Next 2000 Mozart Next 2000 Firmware Mozart Next 30 Mozart Next 300 Mozart Next 3000 Mozart Next 3000 Firmware Mozart Next 300 Firmware Mozart Next 30 Firmware Mozart Next 3500 Mozart Next 3500 Firmware Mozart Next 50 Mozart Next 500 Mozart Next 500 Firmware Mozart Next 50 Firmware Mozart Next 6000 Mozart Next 6000 Firmware Mozart Next 7000 Mozart Next 7000 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-11-19T14:09:03.395Z

Reserved: 2025-10-27T00:00:00.000Z

Link: CVE-2025-63229

cve-icon Vulnrichment

Updated: 2025-11-19T14:03:17.703Z

cve-icon NVD

Status : Analyzed

Published: 2025-11-18T22:15:51.880

Modified: 2025-12-06T00:18:19.227

Link: CVE-2025-63229

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-11-21T09:16:17Z

Weaknesses