Cross Site Scripting Vulnerability in Ilevia EVE X1 Server Firmware
CVE-2025-60737

Currently unrated

Key Information:

Vendor

Ilevia

Vendor
CVE Published:
20 November 2025

What is CVE-2025-60737?

A Cross Site Scripting vulnerability exists in the Ilevia EVE X1 Server Firmware, allowing remote attackers to exploit the '/index.php' component. This security flaw can facilitate the execution of arbitrary code, posing significant risks to system integrity and confidentiality if left unaddressed.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-60737 : Cross Site Scripting Vulnerability in Ilevia EVE X1 Server Firmware