Stored Cross-site Scripting Vulnerability in ENOVIA Collaborative Industry Innovator
CVE-2025-0600

Currently unrated

What is CVE-2025-0600?

A stored Cross-site Scripting (XSS) vulnerability exists in the ENOVIA Collaborative Industry Innovator product within Release 3DEXPERIENCE R2024x. This flaw enables an attacker to inject and execute arbitrary script code in a user's browser session, compromising user data and potentially leading to unauthorized actions within the application.

References

Timeline

  • Vulnerability published

.