First published: Thu Jan 26 2023(Updated: )
A vulnerability has been found in isoftforce Dreamer CMS up to 4.0.1 and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 4.1.3 is able to address this issue. It is recommended to upgrade the affected component. VDB-219334 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dreamer CMS | <=4.0.1 | |
Dreamer CMS | <=4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0513 is classified as problematic due to its potential for remote cross-site scripting attacks.
To mitigate CVE-2023-0513, upgrade Dreamer CMS to a version later than 4.0.1.
Exploiting CVE-2023-0513 can allow attackers to perform cross-site scripting, potentially compromising user data and session integrity.
Yes, the exploit for CVE-2023-0513 has been disclosed publicly, indicating that it may be actively exploited.
CVE-2023-0513 affects all versions of Dreamer CMS up to and including 4.0.1.