PT-2025-54413 · Unknown · Ikaes Accessibility Press

Hunsec

·

Published

2025-12-31

·

Updated

2025-12-31

·

CVE-2025-49355

CVSS v3.1

5.9

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions ikaes Accessibility Press versions through 1.0.2
Description The software contains a flaw related to improper input handling during web page creation, specifically a Stored Cross-site Scripting issue. This allows for the injection of malicious scripts. The issue impacts the application without specifying the number of potentially affected devices or any known real-world exploitation incidents. The flaw involves insufficient sanitization of input data, leading to the possibility of executing arbitrary scripts within the context of a user's browser. This can potentially lead to unauthorized actions or data theft.
Recommendations Update ikaes Accessibility Press to a version later than 1.0.2.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-49355

Affected Products

Ikaes Accessibility Press