Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-17722 | Improper neutralization of input during web page generation ('cross-site scripting') in Nuance Digital Engagement Platform allows an unauthorized attacker to perform spoofing over a network. |
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 09 Jul 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft nuance Digital Engagement Platform |
|
| CPEs | cpe:2.3:a:microsoft:nuance_digital_engagement_platform:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft nuance Digital Engagement Platform |
Thu, 12 Jun 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of input during web page generation ('cross-site scripting') in Nuance Digital Engagement Platform allows an authorized attacker to perform spoofing over a network. | Improper neutralization of input during web page generation ('cross-site scripting') in Nuance Digital Engagement Platform allows an unauthorized attacker to perform spoofing over a network. |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 10 Jun 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Jun 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of input during web page generation ('cross-site scripting') in Nuance Digital Engagement Platform allows an authorized attacker to perform spoofing over a network. | |
| Title | Nuance Digital Engagement Platform Spoofing Vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-20T16:01:18.685Z
Reserved: 2025-05-14T14:13:13.466Z
Link: CVE-2025-47977
Updated: 2025-06-10T17:15:45.480Z
Status : Analyzed
Published: 2025-06-10T17:24:17.200
Modified: 2025-07-09T16:50:05.883
Link: CVE-2025-47977
No data.
OpenCVE Enrichment
No data.
EUVD