CVE 2.3 LOW

Comodo Dragon IP DNS Leakage Detector cross site scripting_CVE-2025-8206

2.3 / 10
LOW
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P

Description

A vulnerability, which was classified as problematic, was found in Comodo Dragon up to 134.0.6998.179. This affects an unknown part of the component IP DNS Leakage Detector. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Basic Information

ID CVE-2025-8206
Source VulDB
Published Jul 26, 2025 at 19:02
Modified Jul 28, 2025 at 16:01

Affected Product

Vendor Comodo
Product Dragon
Version 134.0.6998.179
Affected Versions Comodo Dragon 134.0.6998.179

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.