CNNVD-202510-066 Information

CNNVD ID

CNNVD-202510-066

CVE-2025-40648

  • CNNVD Published: 2025-10-01

Description (Chinese)

Issabel是Issabel组织的一款统一通信平台。 Issabel 5.0.0版本存在跨站脚本漏洞,该漏洞源于缺少对用户输入的验证,可能导致存储型跨站脚本攻击。

Description (English)

Issabel is a unified communications platform organized by Issabel. Issabel version 5.0.0 has a cross-site script loophole, which stems from a lack of verification of user input and may result in a storage-type cross-site script attack.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

Issabel

Published

2025-10-01

Last Modified

2026-02-24

References

https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-issabel-products

Patch

https://www.issabel.com/

Share on: