PT-2025-45185 · Proliz Software · Obs

Published

2025-11-06

·

Updated

2025-11-11

·

CVE-2025-11956

CVSS v3.1

8.9

High

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions Proliz Software Ltd. Co. OBS (Student Affairs Information System) versions prior to 25.0401
Description An Improper Neutralization of Input During Web Page Generation issue, specifically a Stored Cross-site Scripting (XSS) condition, exists in Proliz Software Ltd. Co. OBS (Student Affairs Information System). This allows for the execution of malicious scripts through the injection of untrusted data during web page generation.
Recommendations Update Proliz Software Ltd. Co. OBS (Student Affairs Information System) to version 25.0401 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-11956

Affected Products

Obs