A XSS vulnerability exists in Versa Director Release: 16.1R2 Build: S8. An attacker can use the administration web interface URL to create a XSS based attack.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NVersa Networks Versa Director
APPVersa-Networks16.1r2
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
XSS
CWE
Related vulnerabilities
CVE-2025-24288CRITICAL9.8PL ✓same product
Versa Director: domyślne dane uwierzytelniające umożliwiają pełny dostęp
CVE-2019-25029CRITICAL9.8PL ✓same product
Command injection w Versa Director umożliwiający RCE
CVE-2024-39717HIGH7.2⚠ KEVsame product
The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is...
CVE-2025-23171HIGH7.2same product
The Versa Director SD-WAN orchestration platform provides an option to upload various types of files. The Vers...
CVE-2025-23168MEDIUM6.3same product
The Versa Director SD-WAN orchestration platform implements Two-Factor Authentication (2FA) using One-Time Pas...