CNNVD-202512-1476 Information

CNNVD ID

CNNVD-202512-1476

CVE-2025-61074

  • CNNVD Published: 2025-12-09

Description (Chinese)

adata Mitarbeiter Portal是德国adata公司的一个员工自助服务和人力资源管理平台。 adata Mitarbeiter Portal 2.15.2.0版本存在安全漏洞,该漏洞源于公告板参数Inhalt中和不当,可能导致存储型跨站脚本攻击。

Description (English)

Adata Mitarbeiter Portal is a staff self-service and human resources management platform of the German company Adata. There is a security loophole in version 2.15.2.0 of the adata Mitarbeiter Portal, which stems from the misalignment of the board parameter Inhalt, which may result in a storage-type cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

adata

Published

2025-12-09

Last Modified

2026-02-24

References

https://www.adata.de/mitarbeiter-portal/ https://no-sec.net/posts/cve-2025-61074/ https://access.redhat.com/security/cve/cve-2025-61074

Share on: