PT-2025-30187 · Unknown · Huashengdun Webssh
4M3Rr0R
·
Published
2025-07-20
·
Updated
2025-09-15
·
CVE-2025-7885
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Huashengdun WebSSH versions up to 1.6.2
Description
A problematic issue exists in Huashengdun WebSSH related to the Login Page component. The manipulation of the
hostname/port argument can lead to cross site scripting. This issue may be exploited remotely, and the exploit has been publicly disclosed. The vendor was contacted but did not respond.Recommendations
Update Huashengdun WebSSH to a version newer than 1.6.2.
Exploit
Fix
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Huashengdun Webssh