Vulnerability Description
A cross-site scripting (XSS) vulnerability in the PdfViewer component of Agenzia Impresa Eccobook 2.81.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Temp parameter.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- http://agenzia.com
- http://eccobook.com
- https://github.com/CapgeminiCisRedTeam/Disclosure/blob/main/CVE%20PoC/CVE-2025-5
FAQ
What is CVE-2025-51629?
CVE-2025-51629 is a vulnerability with a CVSS score of 8.8 (HIGH). A cross-site scripting (XSS) vulnerability in the PdfViewer component of Agenzia Impresa Eccobook 2.81.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into ...
How severe is CVE-2025-51629?
CVE-2025-51629 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-51629?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.