CVE-2025-0219

CVSS 2.0 Score 3.3 of 10 (low)

Details

Published Jan 5, 2025
CWE ID 94
CWE ID 79

Summary

CVE-2025-0219 is a newly disclosed vulnerability that affects the Receiver Status Identity Tab component in Trimble SPS851 488.01. This issue is classified as problematic and allows for cross-site scripting (XSS) attacks. Manipulation of the System Name argument triggers the vulnerability, which can be exploited remotely. The exploit has been made public, increasing the risk of attacks. Despite early notification from security researchers, the vendor has not yet responded to address the vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share