PT-2026-20390 · Key Software Solutions · Inforex- General Information Management System

Çetin Bi̇ni̇ci̇

·

Published

2026-02-18

·

Updated

2026-02-18

·

CVE-2025-8308

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Key Software Solutions Inc. INFOREX- General Information Management System versions 2025 through 18022026
Description A flaw exists in Key Software Solutions Inc. INFOREX- General Information Management System that allows for Cross-site Scripting (XSS) through HTTP Headers. This issue arises from improper neutralization of input during web page generation. The HTTP Headers are susceptible to malicious input, potentially enabling an attacker to inject scripts.
Recommendations Update to a version after 18022026.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-8308

Affected Products

Inforex- General Information Management System