Filtered by vendor Configuroweb Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-60314 1 Configuroweb 1 Sistema Web De Inventario 2025-10-09 5.4 Medium
Configuroweb Sistema Web de Inventario 1.0 is vulnerable to a Stored Cross-Site Scripting (XSS) due to the lack of input sanitization on the product name parameter (Nombre:Producto) allowing an authenticated attacker to inject malicious payloads and execute arbitrary JavaScript.