CVE-2025-0833

CVSS 3.1 Score 8.7 of 10 (high)

Details

Published Mar 17, 2025
CWE ID 79

Summary

CVE-2025-0833 is a stored Cross-site Scripting (XSS) vulnerability impacting Route Management in ENOVIA Collaborative Industry Innovator, affecting releases 3DEXPERIENCE R2023x through R2024x. This issue enables attackers to inject and execute malicious scripts in a user's browser session, potentially leading to unauthorized access, data theft, or other malicious activities. Users are advised to update their software to the latest, non-vulnerable release as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share