CVE-2025-31994

HCL Unica Campaign 12.1.10 is vulnerable to Reflected Cross-Site Scripting (XSS) where an attacker injects malicious script into an HTTP request, which is then reflected unsafely in the server's immediate response to the victim's browser, executing the script as if it originated from the trusted website.
Configurations

No configuration.

History

13 Oct 2025, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-13 04:15

Updated : 2025-10-14 19:36


NVD link : CVE-2025-31994

Mitre link : CVE-2025-31994

CVE.ORG link : CVE-2025-31994


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')