{"id":"CVE-2018-25349","title":"userSpice 4.3.24 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts through the X-Forwarded-For HTTP header","summary":"userSpice 4.3.24 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts through the X-Forwarded-For HTTP header. Attackers can send crafted requests to the backup.php endpoint with XSS payloads in…","severity":"medium","cvss":6.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","cwe":["CWE-79"],"published":"2026-05-23","updated":"2026-10-06","sourceUpdated":"2026-10-06T22:10:00.247","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2018-25349","references":[{"url":"https://www.exploit-db.com/exploits/44871","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/userspice-cross-site-scripting-via-x-forwarded-for-header","label":"disclosure@vulncheck.com"}],"tags":["nvd"],"epss":0.00155,"epssPercentile":0.03998,"ingestedAt":"2026-10-06T22:23:15.924Z","slug":"CVE-2018-25349","body":"## Overview\n\nuserSpice 4.3.24 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts through the X-Forwarded-For HTTP header. Attackers can send crafted requests to the backup.php endpoint with XSS payloads in the X-Forwarded-For header that execute when administrators visit the audit log page.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":34,"depthScoreParts":{"impact":33.6,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}