Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting'), Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Datateam Information Technologies Inc. Datactive allows Stored XSS.This issue affects Datactive: from 2.13.34 before 2.14.0.6.
References
| Link | Resource |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-25-0424 | US Government Resource Vendor Advisory |
Configurations
History
30 Jan 2026, 18:55
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:datateam:datactive:*:*:*:*:*:*:*:* | |
| First Time |
Datateam
Datateam datactive |
|
| References | () https://www.usom.gov.tr/bildirim/tr-25-0424 - US Government Resource, Vendor Advisory |
02 Dec 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-02 15:15
Updated : 2026-01-30 20:32
NVD link : CVE-2025-13505
Mitre link : CVE-2025-13505
CVE.ORG link : CVE-2025-13505
JSON object : View
Products Affected
datateam
- datactive
