CVE-2025-1484

A vulnerability exists in the media upload component of the Asset 
Suite versions listed below. If successfully exploited an attacker 
could impact the confidentiality or integrity of the system. An attacker can use this vulnerability to construct a request that will 
cause JavaScript code supplied by the attacker to execute within 
the users browser in the context of that users session with the 
application.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Hitachi EnergyCNA
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
CISA-ADPADP
---
---