CVE-2025-53397

MEDIUM

Advantech iView <5.7.05 build 7057 - XSS

Title source: llm
STIX 2.1

Description

A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site scripting (XSS) attack. By exploiting this flaw, an attacker could execute unauthorized scripts in the user's browser, potentially leading to information disclosure or other malicious activities.

References (2)

Core 2

Scores

CVSS v3 5.4
EPSS 0.0013
EPSS Percentile 31.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-79
Status published
Products (1)
advantech/iview < 5.7.05.7057
Published Jul 11, 2025
Tracked Since Feb 18, 2026