6.5
CVE-2025-52219
- EPSS 0.04%
- Veröffentlicht 26.08.2025 00:00:00
- Zuletzt bearbeitet 09.09.2025 18:56:46
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SelectZero SelectZero Data Observability Platform before 2025.5.2 contains an Open Redirect vulnerability. Legacy UI fields can be used to create arbitrary external links via HTML Injection.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Selectzero ≫ Selectzero Version < 2025.5.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.109 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
|
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.