CVE-2025-27447
EUVD-2025-1985203.07.2025, 12:15
The web application is susceptible to cross-site-scripting attacks. An attacker can create a prepared URL, which injects JavaScript code into the website. The code is executed in the victim’s browser when an authenticated administrator clicks the link.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| endress | meac300-fnade4_firmware | 𝑥 ≤ 0.16.0 |
𝑥
= Vulnerable software versions
References