Junglewise Threat Intelligence

CVE-2025-64130: Zenitel TCIV-3+ is vulnerable to a reflected cross-site scripting vulnerability, which could allow a remote attacker to execute arbitrary

CVE-2025-64130 · Severity: critical · CVSS 9.8 · Published 2025-11-26

Executive brief

Zenitel TCIV-3+ is vulnerable to a reflected cross-site scripting vulnerability, which could allow a remote attacker to execute arbitrary JavaScript on the victim's browser.