CVE-2025-0706

CVSS 3.1 Score 2.4 of 10 (low)

Details

Published Jan 24, 2025
CWE ID 94
CWE ID 79

Summary

CVE-2025-0706 is a newly disclosed vulnerability affecting JoeyBling bootplus up to the version 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. This issue is classified as a cross-site scripting (XSS) vulnerability, which can be exploited remotely. The precise functionality of the affected file, /admin/sys/admin.html, is currently unknown. Since continuous delivery with rolling releases is used by this product, no specific version details of the affected or updated releases have been made available. However, it is known that an exploit for this vulnerability has been disclosed to the public, increasing the risk for potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share