CVE-2025-53397

MEDIUM

Advantech iView <5.7.05 build 7057 - XSS

Title source: llm

Description

A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site scripting (XSS) attack. By exploiting this flaw, an attacker could execute unauthorized scripts in the user's browser, potentially leading to information disclosure or other malicious activities.

Scores

CVSS v3 5.4
EPSS 0.0003
EPSS Percentile 9.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

Classification

CWE
CWE-79
Status published

Affected Products (1)

advantech/iview < 5.7.05.7057

Timeline

Published Jul 11, 2025
Tracked Since Feb 18, 2026