PT-2025-52666 · Unknown · Schlix Cms

Akinerkisa

+1

·

Published

2025-12-22

·

Updated

2026-01-02

·

CVE-2025-67443

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Schlix CMS versions prior to 2.2.9-5
Description Schlix CMS is affected by a Cross-Site Scripting (XSS) issue. The root cause is a lack of javascript sanitization in the login form, which allows incorrect login attempts to be logged as XSS in the admin panel.
Recommendations Update Schlix CMS to version 2.2.9-5 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-67443

Affected Products

Schlix Cms