SoftCOM iKSORIS Internet Starter Module Reflected Cross-Site Scripting Vulnerability
Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Internet Starter module of SoftCOM iKSORIS software, affecting all versions prior to 79.0. This vulnerability allows an attacker to inject a malicious script into a form intended for password reset. When the user submits the form, the script executes in the user's context.
Impact
Exploitation of this vulnerability allows for reflected cross-site scripting, where injected scripts run in the context of the user.
Remediation
Users can update to SoftCOM iKSORIS version 79.0 or later to address this vulnerability.
Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
1.7exploitability
6.4remediation
7.7relevance
0.0threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
