PT-2025-47592 · Ilevia · Ilevia Eve X1 Server Firmware

Published

2025-11-20

·

Updated

2025-11-20

·

CVE-2025-60737

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Ilevia EVE X1 Server Firmware versions prior to 4.7.18.0.eden:Logic version prior to 6.00 - 2025 07 21
Description A Cross Site Scripting issue exists in Ilevia EVE X1 Server Firmware. A remote attacker may be able to execute arbitrary code through the /index.php component.
Recommendations Update Ilevia EVE X1 Server Firmware to a version greater than 4.7.18.0.eden:Logic version greater than 6.00 - 2025 07 21.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-60737

Affected Products

Ilevia Eve X1 Server Firmware