JavaScript Injection Vulnerability in the OmniAccess Stellar Web Management Interface
Vulnerability Description
Successful exploitation of the vulnerability could allow an attacker with administrator credentials for the access point to inject malicious JavaScript into the payload of web traffics, potentially leading to session hijacking and denial-of-service (DoS).
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-52687
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Jay Turla
- Japz Divino
- Jerold Camacho
References
More from Alcatel-Lucent
View All →Affected Vendor
Alcatel-Lucent
View all reports →