CVE-2025-0219
CVSS 2.0 Score 3.3 of 10 (low)
Details
Published Jan 5, 2025
CWE ID 94
CWE ID 79
Summary
CVE-2025-0219 is a newly disclosed vulnerability that affects the Receiver Status Identity Tab component in Trimble SPS851 488.01. This issue is classified as problematic and allows for cross-site scripting (XSS) attacks. Manipulation of the System Name argument triggers the vulnerability, which can be exploited remotely. The exploit has been made public, increasing the risk of attacks. Despite early notification from security researchers, the vendor has not yet responded to address the vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Trimble Inc.