- Description
- Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Netoloji Software E-Flow allows Accessing Functionality Not Properly Constrained by ACLs, Stored XSS, File Content Injection.This issue affects E-Flow: before 3.23.00.
- Source
- iletisim@usom.gov.tr
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Primary
- Base score
- 8.2
- Impact score
- 5.3
- Exploitability score
- 2.3
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:H/A:L
- Severity
- HIGH
- iletisim@usom.gov.tr
- CWE-79
- Hype score
- Not currently trending
CVE Alert: CVE-2025-0984 - https://t.co/HuClDqZxUX #OSINT #ThreatIntel #CyberSecurity #cve_2025_0984
@RedPacketSec
7 May 2025
4 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2025-0984 🔴 HIGH (8.2) 🏢 Netoloji Software - E-Flow 🏗️ 0 🔗 https://t.co/mFXzL5XY8F 🔗 https://t.co/1ZIqH0wt8X #CyberCron #VulnAlert #InfoSec https://t.co/Kl0t6YFgvC
@cybercronai
6 May 2025
19 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-0984 Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Netoloji S… https://t.co/oaT2xAEODF
@CVEnew
6 May 2025
448 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes