Unrated severityNVD Advisory· Published Oct 10, 2025· Updated Nov 3, 2025
CVE-2025-11189
CVE-2025-11189
Description
The Kiwire Captive Portal contains a reflected cross-site scripting (XSS) vulnerability within the login-url parameter, allowing for Javascript execution.
Affected products
2- Synchroweb/Kiwirev5Range: 3.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.