Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-45236

A stored cross-site scripting (XSS) vulnerability in the Edit Profile feature of DBSyncer v2.0.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Nickname parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.5%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2025-45236
  • 86dbs » Dbsyncer » Version: 2.0.6
    cpe:2.3:a:86dbs:dbsyncer:2.0.6


Contact Us

Shodan ® - All rights reserved