CyberSec.Space Logo
返回 CVE 浏览器

CVE-2019-25379

HIGH
7.2
CVSS Severity Score
EPSS Score0.1780%
EPSS Percentile10.96th
Published2026年2月16日
Last Modified2026年2月20日

Vulnerability Description

Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains stored and reflected cross-site scripting vulnerabilities in the urlfilter.cgi endpoint that allow attackers to inject malicious scripts. Attackers can submit POST requests with script payloads in the REDIRECT_PAGE or CHILDREN parameters to execute arbitrary JavaScript in user browsers.

Affected Platforms (CPE)

💻
Smoothwall

Smoothwall Express

= 3.1

References & Advisories

相关漏洞威胁