← Back to CVE List

CVE-2025-2609

Published: 2025-03-21T23:15Z
Last Modified: 2025-04-01T20:28Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Improper neutralization of input during web page generation vulnerability in MagnusSolution MagnusBilling login logging allows unauthenticated users to store HTML content in the viewable log component accessible at /mbilling/index.php/logUsers/read" cross-site scripting This vulnerability is associated with program files protected/components/MagnusLog.Php. This issue affects MagnusBilling: through 7.3.0. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt