Stored Cross-Site Scripting in Netcad Software's Netigma
CVE-2025-9798

8.9HIGH

Key Information:

Status
Vendor
CVE Published:
23 September 2025

What is CVE-2025-9798?

A stored cross-site scripting (XSS) vulnerability exists in Netcad Software Inc.'s Netigma, specifically affecting versions from 6.3.3 up to and including 6.3.5 V8. This vulnerability arises due to improper neutralization of user input during web page generation, exposing systems to potential exploitation where attackers can inject malicious scripts. Users of affected versions are advised to apply the necessary security patches to mitigate this risk.

Affected Version(s)

Netigma 6.3.3 < 6.3.5 V8

References

CVSS V3.1

Score:
8.9
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ahmet DURMUĹž
.
CVE-2025-9798 : Stored Cross-Site Scripting in Netcad Software's Netigma