Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.
Metrics
Affected Vendors & Products
References
History
Mon, 22 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Mon, 22 Dec 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel. | |
| References |
|
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-22T17:01:28.703Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-67443
Updated: 2025-12-22T17:00:59.484Z
Status : Received
Published: 2025-12-22T17:15:59.913
Modified: 2025-12-22T17:15:59.913
Link: CVE-2025-67443
No data.
OpenCVE Enrichment
No data.