CNNVD-202507-3612 Information

CNNVD ID

CNNVD-202507-3612

CVE-2025-52358

  • CNNVD Published: 2025-07-29

Description (Chinese)

Vivaldi iCONTROL+ Server是意大利Vivaldi公司的一个音频控制设备。 Vivaldi iCONTROL+ Server 4.7.8.0.eden Logic 5.32及之前版本存在安全漏洞,该漏洞源于error或edit-menu-item参数未经验证,可能导致跨站脚本攻击。

Description (English)

Vivaldi iCONTROL+ Server is an audio control equipment of the Italian company Vivaldi. Vivaldi iCONTROL+ Server 4.7.8.eden Logic 5.32 et seq. contains a security loophole originating from unveror or edit-menu-item parameters, which may result in a cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Vivaldi

Published

2025-07-29

Last Modified

2026-02-24

References

https://vivaldigroup.it/en/ https://github.com/MatJosephs/CVEs/blob/main/CVE-2025-52358/README.md https://access.redhat.com/security/cve/cve-2025-52358

Share on: