PT-2026-29205 · Dassault Systèmes · Enovia Collaborative Industry Innovator
Published
2026-03-31
·
Updated
2026-03-31
·
CVE-2025-10551
CVSS v3.1
8.7
High
| AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N |
A Stored Cross-site Scripting (XSS) vulnerability affecting Document Management in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in user's browser session.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Enovia Collaborative Industry Innovator