CVE Database
/

CVE-2025-8153

Back to search

CVE-2025-8153

Published: Sep 17, 2025

Modified: Sep 17, 2025

PUBLISHED

Description

Cross-site Scripting vulnerability in NEC Corporation UNIVERGE IX from Ver.9.5 to Ver.10.7, from Ver.10.8.21 to Ver.10.8.36, from Ver.10.9.11 to Ver.10.9.24, from Ver.10.10.21 to Ver.10.10.31, Ver.10.11.6 and UNIVERGE IX-R/IX-V Ver1.3.16, Ver1.3.21 allows a attacker to inject an arbitrary scripts may be executed on the user's browser.

VendorProductVersions

NEC Corporation

UNIVERGE IX

affected
from Ver.9.5 to Ver.10.7

NEC Corporation

UNIVERGE IX

affected
from Ver.10.8.21 to Ver.10.8.36

NEC Corporation

UNIVERGE IX

affected
from Ver.10.9.11 to Ver.10.9.24

NEC Corporation

UNIVERGE IX

affected
from Ver.10.10.21 to Ver.10.10.31, Ver.10.11.6

NEC Corporation

UNIVERGE IX-R/IX-V

affected
Ver1.3.16, Ver1.3.21

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2025-8153 - Security Vulnerability | QwikSec