Description

Improper neutralization of input during web page generation vulnerability in MagnusSolution MagnusBilling login logging allows unauthenticated users to store HTML content in the viewable log component accessible at /mbilling/index.php/logUsers/read" cross-site scripting This vulnerability is associated with program files protected/components/MagnusLog.Php. This issue affects MagnusBilling: through 7.3.0.

INFO

Published Date :

2025-03-21T22:41:13.784Z

Last Modified :

2025-11-22T01:42:35.649Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2025-2609 vulnerability.

Vendors Products
Magnussolution
  • Magnusbilling

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact