CVE-2025-51503 Information

Description

A Stored Cross-Site Scripting (XSS) vulnerability in Microweber CMS 2.0 allows attackers to inject malicious scripts into user profile fields leading to arbitrary JavaScript execution in admin browsers.

Reference

https://github.com/progprnv/CVE-Reports https://github.com/progprnv/CVE-Reports/blob/main/CVE-2025-51503 https://github.com/progprnv/CVE-Reports/blob/main/MICROWEBER%20%5BAdmin%20Panel%5D%20Stored%20XSS%20in%20profile%20path.md

CNNVD-202507-3937 (Published: 2025-07-31)

Share on: