Medium severity6.1NVD Advisory· Published Jan 17, 2024· Updated Jun 17, 2026
CVE-2023-25295
CVE-2023-25295
Description
A Cross Site Scripting (XSS) vulnerability in evewa3ajax.php in GRUEN eVEWA3 Community 31 through 53 allows attackers to obtain escalated privileges via a crafted request to the login panel.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
331-53+ 1 more
- (no CPE)range: 31-53
- (no CPE)
Patches
Vulnerability mechanics
References
1- blog.munz4u.de/posts/2023/03/cve-2023-25295-ato-via-rxss-in-evewa3-community/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.