Cross Site Scripting Vulnerability in Datacom DM955 Wireless Basic Settings
CVE-2025-8765

5.1MEDIUM

Key Information:

Vendor

Datacom

Vendor
CVE Published:
9 August 2025

What is CVE-2025-8765?

A significant vulnerability has been identified in the Wireless Basic Settings of Datacom DM955 5GT 1200 devices. An attacker can exploit this flaw by manipulating the SSID argument, resulting in cross site scripting attacks that may be executed remotely. This vulnerability poses a serious risk as it allows for potential unauthorized access or manipulation of sensitive information. With the details of this exploit publicly disclosed, it is crucial for users to take prompt action to secure their devices and prevent possible exploitation.

Affected Version(s)

DM955 5GT 1200 825.8010.00

References

CVSS V4

Score:
5.1
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Fergod (VulDB User)
.
CVE-2025-8765 : Cross Site Scripting Vulnerability in Datacom DM955 Wireless Basic Settings