PT-2023-17195 · Unknown · Proliz Obs

Mustafa Durmus

·

Published

2023-04-07

·

Updated

2026-05-22

·

CVE-2023-1726

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Proliz OBS versions prior to 23.04.01
Description The issue is related to Improper Neutralization of Input During Web Page Generation, also known as Cross-site Scripting. This allows for Stored XSS attacks for authenticated users.
Recommendations For versions prior to 23.04.01, update to version 23.04.01 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the web application to minimize the risk of exploitation.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-1726

Affected Products

Proliz Obs