Description
A vulnerability has been found in pojoin h3blog up to 5bf704425ebc11f4c24da51f32f36bb17ae20489. Affected by this issue is the function ppt_log of the file /login of the component HTTP Header Handler. Such manipulation of the argument X-Forwarded-For leads to cross site scripting. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed.
INFO
Published Date :
2025-09-15T22:32:09.930Z
Last Modified :
2025-09-16T13:45:59.226Z
Source :
VulDB
AFFECTED PRODUCTS
The following products are affected by CVE-2025-10485 vulnerability.
| Vendors | Products |
|---|---|
| Pojoin |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-10485.