Group-Office is an enterprise CRM and groupware tool. This Stored XSS vulnerability exists where user input in the Name field is not properly sanitized before being stored. This vulnerability is fixed in 6.8.100.
Metrics
Affected Vendors & Products
References
History
Thu, 06 Mar 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 06 Mar 2025 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Group-Office is an enterprise CRM and groupware tool. This Stored XSS vulnerability exists where user input in the Name field is not properly sanitized before being stored. This vulnerability is fixed in 6.8.100. | |
Title | Group-Office has a Stored XSS Vulnerability via user's name field | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-03-06T18:41:00.761Z
Updated: 2025-03-06T20:35:12.106Z
Reserved: 2025-02-03T19:30:53.399Z
Link: CVE-2025-25191

Updated: 2025-03-06T20:35:07.860Z

Status : Received
Published: 2025-03-06T19:15:27.113
Modified: 2025-03-06T19:15:27.113
Link: CVE-2025-25191

No data.