Dream Technology · Mica · CVE-2023-2220
**Name of the Vulnerable Software and Affected Versions**
Dream Technology mica versions up to 3.0.5
**Description**
A problematic issue has been identified, affecting an unknown function of the component Form Object Handler. This issue leads to cross site scripting and can be exploited remotely.
**Recommendations**
For versions up to 3.0.5, consider disabling the Form Object Handler component until a patch is available.
As a temporary workaround, restrict access to the affected component to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.