CVE-2025-24545
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Feb 3, 2025
CWE ID 79
Summary
CVE-2025-24545 is a Cross-site Scripting (XSS) vulnerability affecting BSK Forms Validation used by BannerSky.com. The flaw, located in their web page generation process, allows attackers to inject malicious scripts into web pages viewed by other users. By exploiting this issue, an adversary can steal sensitive information or take control of users' browsers. BSK Forms Validation versions from n/a through 1.7 are vulnerable, making it crucial for affected organizations to apply the necessary patches promptly.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share