4.7
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Paraşüt Software Bizmu allows Cross-Site Scripting (XSS).This issue affects Bizmu: from 2.27.0 through 20250212.
Basic Information
ID
CVE-2025-0547
Source
TR-CERT
Published
Sep 18, 2025 at 08:59
Affected Product
Vendor
Paraşüt Software
Product
Bizmu
Version
2.27.0
Affected Versions
Paraşüt Software Bizmu 2.27.0