Description

Improper Neutralization of Input During Web Page Generation Cross-site Scripting vulnerability in Jalios JPlatform 10 allows for Reflected XSS and Stored XSS.This issue affects JPlatform 10: before 10.0.8 (SP8), before 10.0.7 (SP7), before 10.0.6 (SP6) and Jalios Workplace 6.2, Jalios Workplace 6.1, Jalios Workplace 6.0, and Jalios Workplace 5.3 to 5.5

INFO

Published Date :

2025-03-21T19:02:39.718Z

Last Modified :

2025-11-19T20:26:02.084Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2025-25035 vulnerability.

Vendors Products
Jalios
  • Jcms

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact