Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Viktor Mares

#20905of 53,633
12Total CVSS
Vulnerabilities · 2
Medium
2
PT-2025-11107
5.6
2025-03-12
Apache · Apache Felix Http Webconsole Plugin · CVE-2025-27867
Name of the Vulnerable Software and Affected Versions: Apache Felix HTTP Webconsole Plugin versions 1.X through 1.2.0 Description: The issue is related to Improper Neutralization of Input During Web Page Generation, also known as Cross-site Scripting. Users are advised to upgrade to a newer version to fix the issue. Recommendations: For Apache Felix HTTP Webconsole Plugin versions 1.X through 1.2.0, upgrade to version 1.2.2 to resolve the issue.
PT-2025-6037
6.4
2025-02-10
Apache · Apache Felix Webconsole · CVE-2025-25247
**Name of the Vulnerable Software and Affected Versions** Apache Felix Webconsole versions 4.x up to 4.9.8 Apache Felix Webconsole versions 5.x up to 5.0.8 **Description** The issue is related to Improper Neutralization of Input During Web Page Generation, also known as Cross-site Scripting. This allows for potential exploitation. **Recommendations** For Apache Felix Webconsole versions 4.x up to 4.9.8, upgrade to version 4.9.10 or higher. For Apache Felix Webconsole versions 5.x up to 5.0.8, upgrade to version 5.0.10 or higher.