PT-2023-17089 · Datagear · Datagear

Yangyanglo

·

Published

2023-03-22

·

Updated

2024-05-17

·

CVE-2023-1573

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions DataGear versions up to 1.11.1
Description A vulnerability was found in the Graph Dataset Handler component, leading to cross-site scripting. The attack can be initiated remotely. The issue affects some unknown processing of this component.
Recommendations For versions up to 1.11.1, upgrade to version 1.12.0 to address this issue. It is recommended to upgrade the affected component.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-1573

Affected Products

Datagear