Reflected Cross-Site Scripting Vulnerability in WeGIA Web Manager by LabRedesCefetRJ
CVE-2025-53936
6.4MEDIUM
What is CVE-2025-53936?
A reflected Cross-Site Scripting (XSS) vulnerability exists in the personalizacao_selecao.php
endpoint of the WeGIA application. This flaw allows attackers to execute arbitrary scripts by manipulating the nome_car
parameter. The issue has been addressed in version 3.4.5, which mitigates the risk of script injection and enhances the overall security posture of the application.
Affected Version(s)
WeGIA < 3.4.5