go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

NetVision Information|ISOinsight - Reflected Cross-site Scripting

TVN ID TVN-202512010
CVE ID CVE-2025-15355
CVSS 6.1 (Medium)
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected Products ISOinsight from version 2.9.0.x before 2.9.0.250911
ISOinsight from version 3.0.0.x before 3.0.0.251127
Description ISOinsight developed by NetVision Information has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.
Solution For version 2.9.0.x, please update to 2.9.0.250911 or later.
For version 3.0.0.x, please update to 3.0.0.251127 or later.
Credit Security member
Public Date 2025-12-30
Top