CNNVD-202511-687 Information

CNNVD ID

CNNVD-202511-687

CVE-2025-11956

  • CNNVD Published: 2025-11-06

Description (Chinese)

PROLIZ OBS是土耳其PROLIZ公司的一个学生信息系统。 Proliz OBS 25.0401之前版本存在跨站脚本漏洞,该漏洞源于网页生成期间输入中和不当,可能导致存储型跨站脚本攻击。

Description (English)

PROLIZ OBS is a student information system of the Turkish company ProLIZ. The pre-Proliz ObS 25.0401 version has a cross-site script loophole, which stems from the in-line and inappropriate input during the web page generation and may result in a storage-type cross-site script attack.

Hazard Level

Medium

Vulnerability Type

跨站脚本

Affected Vendor

PROLIZ

Published

2025-11-06

Last Modified

2026-02-24

References

https://www.usom.gov.tr/bildirim/tr-25-0379

Patch

https://www.prolizyazilim.com/en/index.htm

Share on: