Loading
the BMA login interface allows arbitrary JavaScript or HTML to be written straight into the page’s Document Object Model via the error= URL parameter
Use CWE-79, Barracuda vendor hub and Message Archiver Firmware product page to widen CVE-2025-8319 into its surrounding weakness, vendor, and product context.