Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-11836 | A vulnerability was found in baseweb JSite 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /a/sys/area/save. The manipulation of the argument Name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. |
Wed, 15 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jsite
Jsite jsite |
|
| CPEs | cpe:2.3:a:jsite:jsite:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Jsite
Jsite jsite |
Fri, 18 Apr 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 18 Apr 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in baseweb JSite 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /a/sys/area/save. The manipulation of the argument Name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | baseweb JSite save cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-18T13:06:07.866Z
Reserved: 2025-04-18T02:44:18.717Z
Link: CVE-2025-3789
Updated: 2025-04-18T13:05:59.277Z
Status : Analyzed
Published: 2025-04-18T13:15:58.330
Modified: 2025-10-15T14:03:33.360
Link: CVE-2025-3789
No data.
OpenCVE Enrichment
No data.
EUVD