PT-2023-14301 · Gx · Xperiencentral

Published

2023-07-26

·

Updated

2024-10-23

·

CVE-2022-43713

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions GX Software XperienCentral versions 10.33.1 through 10.35.0
Description The issue concerns invalid data input due to bypassed form validation in Interactive Forms (IAF).
Recommendations For GX Software XperienCentral versions 10.33.1 through 10.35.0, update to a version that includes the fix for the form validation bypass issue to prevent invalid data input.

Fix

RCE

Improper Encoding or Escaping of Output

Weakness Enumeration

Related Identifiers

CVE-2022-43713

Affected Products

Xperiencentral