PT-2025-38703 · Horato Internet Technologies · Virtual Library Platform

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-9035

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions Horato Internet Technologies Ind. And Trade Inc. Virtual Library Platform versions prior to 20.0
Description The software contains a flaw related to improper input handling during web page generation, potentially leading to Reflected Cross-site Scripting (XSS). This could allow an attacker to inject malicious scripts into web pages viewed by other users.
Recommendations Update to version 20.0 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-9035

Affected Products

Virtual Library Platform