Home

Description

A Stored Cross-Site Scripting (XSS) vulnerability in Microweber CMS 2.0 allows attackers to inject malicious scripts into user profile fields, leading to arbitrary JavaScript execution in admin browsers.

PUBLISHED Reserved 2025-06-16 | Published 2025-07-31 | Updated 2025-07-31 | Assigner mitre

References

github.com/...ER [Admin Panel] Stored XSS in profile path.md

github.com/progprnv/CVE-Reports

github.com/progprnv/CVE-Reports/blob/main/CVE-2025-51503

cve.org (CVE-2025-51503)

nvd.nist.gov (CVE-2025-51503)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.