Loading vulnerability details…
CVSS v3.1
7.3
EPSS
0.25%
Published
Aug 27, 2025
Modified
Apr 6, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
In Hyundai Navigation App STD5W.EUR.HMC.230516.afa908d, an attacker can inject HTML payloads in the profile name field in navigation app which then get rendered.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:LWeaknesses (CWE)
Affected Products (1)
References (2)