7.6
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L
Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Proliz Software Ltd. Co. OBS (Student Affairs Information System) allows Reflected XSS.This issue affects OBS (Student Affairs Information System): before V26.0401.
Basic Information
ID
CVE-2025-10914
Source
TR-CERT
Published
Oct 23, 2025 at 08:36
Affected Product
Vendor
Proliz Software Ltd. Co.
Product
OBS (Student Affairs Information System)
Affected Versions
Proliz Software Ltd. Co. OBS (Student Affairs Information System) 0