CVE-2026-27504 | sa2blv SVXportal up to 2.5 Query Parameter radiomobile_front.php stationid cross site scripting
A vulnerability, which was classified as problematic, has been found in sa2blv SVXportal up to 2.5. Impacted is an unknown function of the file radiomobile_front.php of the component Query Parameter Handler. Performing a manipulation of the argument stationid results in cross site scripting.
This vulnerability is reported as CVE-2026-27504. The attack is possible to be carried out remotely. No exploit exists.