Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update to version 20251020.18r45177 and later
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 27 Nov 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Otsuka
Otsuka fms |
|
| Vendors & Products |
Otsuka
Otsuka fms |
Mon, 24 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Nov 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | FMS developed by Otsuka Information Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks. | |
| Title | Otsuka Information Technology|FMS - Reflected Cross-site Scripting | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-11-24T16:04:29.829Z
Reserved: 2025-11-24T02:49:54.484Z
Link: CVE-2025-13589
Updated: 2025-11-24T16:04:24.170Z
Status : Deferred
Published: 2025-11-24T04:15:57.737
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-13589
No data.
OpenCVE Enrichment
Updated: 2025-11-27T09:45:35Z