← Back

CVE-2025-41768

nvd nist
Published: Jan 20, 2026Modified: Jun 17, 2026Deferred

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: info@cert.vde.com (Secondary)

Description

An high privileged remote attacker can inject arbitrary content into the custom CSS field on the affected devices due to improper neutralization of input during web page generation ('Cross-site Scripting').

References (1)

Timeline

No history available yet.