Cross-Site Scripting Vulnerability in Rolantis Information Technologies Agentis
CVE-2025-4284

6.1MEDIUM

What is CVE-2025-4284?

The affected version of Rolantis Information Technologies Agentis is vulnerable to Cross-Site Scripting (XSS) attacks, allowing an attacker to inject malicious scripts into web pages viewed by users. This vulnerability is classified as reflected XSS and DOM-based XSS, which can be exploited by leveraging improper input sanitization during web page generation. It is essential for users of Agentis before version 4.32 to take remedial measures to safeguard against potential exploits.

Affected Version(s)

Agentis 0 < 4.32

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tunahan TEKEOGLU
.
CVE-2025-4284 : Cross-Site Scripting Vulnerability in Rolantis Information Technologies Agentis