CVE-2025-6185
18.07.2025, 00:15
Leviton AcquiSuite and Energy Monitoring Hub are susceptible to a cross-site scripting vulnerability, allowing an attacker to craft a malicious payload in URL parameters, which would execute in a client browser when accessed by a user, steal session tokens, and control the service.
Awaiting analysis
This vulnerability is currently awaiting analysis.