Cross-Site Scripting Risk in Radware AlteonOS Web UI Management
CVE-2025-57444

6.1MEDIUM

Key Information:

Vendor

Radware

Vendor
CVE Published:
1 October 2025

What is CVE-2025-57444?

An authenticated cross-site scripting vulnerability exists in the Administrative interface of Radware AlteonOS Web UI Management v33.0.4.50. This flaw allows malicious actors to execute arbitrary web scripts or HTML by injecting specially crafted payloads into the Description parameter. This can lead to unauthorized actions within the application, making it essential for users to apply necessary security measures to protect their systems.

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.