CVE-2025-0339
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Summary
CVE-2025-0339 is a newly identified vulnerability affecting the HTTP GET Request Handler component in the Online Bike Rental 1.0 software. An unknown function in the file /vehical-details.php contains a problematic code segment that enables cross-site scripting (XSS) attacks. By exploiting this issue, malicious actors can inject malicious scripts into web pages viewed by other users, leading to unauthorized access or data theft. The vulnerability can be exploited remotely, increasing the risk to organizations and individuals using the Online Bike Rental system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.