nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-4996 CVE-2025-4996
MEDIUM
Intelbras RF 301K Add Static IP cross site scripting
Record summary
CVE-2025-4996 has a selected CVSS score of 4.8 (medium).
Description
A vulnerability, which was classified as problematic, has been found in Intelbras RF 301K 1.1.5. This issue affects some unknown processing of the component Add Static IP. The manipulation of the argument Description leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated May 20, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
RF 301KBrowse Intelbras / RF 301K | CVE List | 1.1.5 | affected |
References
4VDB-309647 | CTI Indicators (IOB, IOC, TTP, IOA)signaturepermissions required
https://vuldb.com/?ctiid.309647 VDB-309647 | Intelbras RF 301K Add Static IP cross site scriptingvdb entryTechnical description
https://vuldb.com/?id.309647 Submit #501900 | INTELBRAS RF 301K 1.1.5 Cross Site ScriptingThird-party advisory
https://vuldb.com/?submit.501900