cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2025-0193,https://securityvulnerability.io/vulnerability/CVE-2025-0193,Stored Cross-site Scripting Vulnerability in Moxa MGate 5121/5122/5123 Series Firmware,"A stored Cross-site Scripting (XSS) flaw is present in the firmware of Moxa's MGate 5121, 5122, and 5123 Series devices due to inadequate validation and encoding of user inputs within the 'Login Message' function. An attacker with administrative privileges can exploit this vulnerability to inject harmful scripts that are persistently stored on the device. These scripts execute when other users visit the login page, which may lead to unauthorized actions or varied impacts depending on those users' privileges.",Moxa,"Mgate 5121 Series,Mgate 5122 Series,Mgate 5123 Series",5.2,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-15T11:05:11.594Z,0