CVE-2025-40769CWE-1164

A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V3.0)

High · published August 12, 2025

CVSS v4.0
7.5
EPSS
0%
Percentile
4.5
In the wild
Unconfirmed
What it is

A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V3.0). The affected application uses a Content Security Policy that allows unsafe script execution methods. This could allow an attacker to execute unauthorized scripts, potentially leading to cross-site scripting attacks.

The record
Technical detail
CVSS v4.0
7.5 · HIGH
Vector
CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS
0.00150 · 4.5th percentile
Weakness
CWE-1164 · Irrelevant Code
Published
2025-08-12T11:17Z
EPSS history
Timeline
  • 12 AUG 11:17Z
    A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V3.0)
    cvelistv5