Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-4992


A stored Cross-site Scripting (XSS) vulnerability affecting Service Items Management in Service Process Engineer from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in user's browser session.


Published

2025-05-30T15:15:42.830

Last Modified

2025-05-30T16:31:03.107

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 8.7 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-79

Affected Vendors & Products

-


References