PT-2025-50978 · Qualitor · Qualitor

Chor4O

·

Published

2025-12-12

·

Updated

2025-12-13

·

CVE-2025-14580

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Qualitor versions through 8.24.73
Description A security issue exists in Qualitor that allows for cross site scripting. The issue is related to manipulation of the cdscript argument within an unknown function of the file '/Qualitor/html/bc/bcdocumento9/biblioteca/request/viewDocumento.php'. This allows for remote attacks. The exploit has been publicly disclosed.
Recommendations Upgrade the affected component to a newer version.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-14580

Affected Products

Qualitor