CVE-2025-34141 - CVE House
Back to Database
Status published Medium CVE-2025-34141

ETQ Reliance CG < SE.2025.1 Reflected XSS in `SQLConverterServlet`

Vulnerability Description

A reflected cross-site scripting (XSS) vulnerability exists in ETQ Reliance CG (legacy) platform within the `SQLConverterServlet` component. This vulnerability requires user interaction, such as clicking a crafted link, and may result in execution of unauthorized scripts in the user's context. The affected servlet was unnecessarily exposed to authenticated users and has since been disabled in version SE.2025.1.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-34141

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Adam Kues and Shubham Shah of Assetnote

Affected Vendor

Affected Software

Reliance CG (legacy)
Vulnerable Versions:
0

Timeline

Official Publish: July 22nd, 2025
Last Modified: May 15th, 2026
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)