CNNVD-202509-3516 Information

CNNVD ID

CNNVD-202509-3516

CVE-2025-55887

  • CNNVD Published: 2025-09-22

Description (Chinese)

ARD GEC en Ligne是法国ARD公司的一个线上服务门户网站。 ARD GEC en Ligne存在安全漏洞,该漏洞源于对transactionID参数输入验证和输出编码不足,可能导致跨站脚本攻击。

Description (English)

ARD GEC en Ligne is an online service portal for ARD, France. ARD GEC en Ligne has a security loophole, which stems from inadequate input and output coding of transactionID parameters, which may lead to cross-site script attacks.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

ARD

Published

2025-09-22

Last Modified

2026-02-24

References

https://services.ard.fr/index.php http://ard.com https://github.com/0xZeroSec/CVE-2025-55887 http://alpes.com https://access.redhat.com/security/cve/cve-2025-55887

Share on: