CVE-2025-0830
CVSS 3.1 Score 8.7 of 10 (high)
Details
Published Mar 17, 2025
CWE ID 79
Summary
CVE-2025-0830 is a stored Cross-site Scripting (XSS) vulnerability impacting the Meeting Management feature in ENOVIA Change Manager from releases R2022x to R2024x. This issue enables attackers to inject and execute malicious scripts in users' browser sessions. Successful exploitation can lead to unintended actions, data theft, or unauthorized access to sensitive information. It is essential for affected organizations to apply the necessary patches or updates to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.