Ghostwire

CVE-2025-14320: Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Tegsoft Management...

CRITICAL CVSS 9.5

Published: May 4, 2026 | Last Modified: May 4, 2026

Description

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Tegsoft Management and Information Services Trade Limited Company Online Support Application allows Reflected XSS. This issue affects Online Support Application: from V3 through 31122025.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (2 articles)

References