Stored XSS Vulnerability in ENOVIA Collaborative Industry Innovator by Dassault Systèmes
CVE-2025-0598

Currently unrated

Key Information:

Vendor
CVE Published:
17 March 2025

What is CVE-2025-0598?

A stored Cross-site Scripting (XSS) vulnerability has been identified in the ENOVIA Collaborative Industry Innovator, affecting versions from 3DEXPERIENCE R2023x to R2024x. This vulnerability allows attackers to inject arbitrary script code that could be executed in a user’s browser session, potentially compromising the security of sensitive data and leading to unauthorized actions within the application.

References

Timeline

  • Vulnerability published

.