Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25905 | A Stored Cross-Site Scripting (XSS) vulnerability in SourceCodester FAQ Management System 1.0 allows an authenticated attacker to inject malicious JavaScript into the 'question' and 'answer' fields via the update-faq.php endpoint. |
Thu, 04 Sep 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Remyandrade
Remyandrade faq Management System |
|
| CPEs | cpe:2.3:a:remyandrade:faq_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Remyandrade
Remyandrade faq Management System |
Wed, 27 Aug 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Wed, 27 Aug 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sourcecodester
Sourcecodester faq Management System |
|
| Vendors & Products |
Sourcecodester
Sourcecodester faq Management System |
Tue, 26 Aug 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Stored Cross-Site Scripting (XSS) vulnerability in SourceCodester FAQ Management System 1.0 allows an authenticated attacker to inject malicious JavaScript into the 'question' and 'answer' fields via the update-faq.php endpoint. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-27T16:01:58.749Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-57425
Updated: 2025-08-27T16:01:48.640Z
Status : Analyzed
Published: 2025-08-26T17:15:40.563
Modified: 2025-09-04T18:34:38.040
Link: CVE-2025-57425
No data.
OpenCVE Enrichment
Updated: 2025-08-27T11:41:38Z
EUVD