PT-2025-33404 · Unknown · Givanz Vvveb

0Xhamy

·

Published

2025-08-14

·

Updated

2025-08-15

·

CVE-2025-8975

CVSS v3.1
5.4
VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

Name of the Vulnerable Software and Affected Versions:

givanz Vvveb versions up to 1.0.5

Description:

A vulnerability was identified in givanz Vvveb up to version 1.0.5. This affects an unknown part of the file `admin/template/content/edit.tpl`. The manipulation of the argument `slug` leads to cross-site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public.

Recommendations:

Upgrade to version 1.0.6.

Exploit

Fix

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-8975

Affected Products

Givanz Vvveb