CVE-2025-0398

A vulnerability has been found in longpi1 warehouse 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /resources/..;/inport/updateInport of the component Backend. The manipulation of the argument remark leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en longpi1 warehouse 1.0 y se ha clasificado como problemática. Esta vulnerabilidad afecta a una funcionalidad desconocida del archivo /resources/..;/inport/updateInport del componente Backend. La manipulación del argumento remark conduce a Cross Site Scripting. El ataque se puede ejecutar de forma remota. El exploit se ha hecho público y puede utilizarse.

12 Jan 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-12 14:15

Updated : 2026-06-17 08:26


NVD link : CVE-2025-0398

Mitre link : CVE-2025-0398

CVE.ORG link : CVE-2025-0398


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')