CVE-2025-27693

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Apr 2, 2025
CWE ID 79

Summary

CVE-2025-27693 is a Cross-site Scripting (XSS) vulnerability affecting the Dell Wyse Management Suite. Versions of the software prior to WMS 5.1 are at risk. An attacker with remote access and high privileges could exploit this flaw, resulting in script injection and potential data theft or unauthorized actions. The vulnerability arises from improper neutralization of user input during web page generation. Upgrading to WMS 5.1 or implementing appropriate security measures against XSS attacks is recommended to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share