CVE-2023-1772: DataGear Diagram Type cross site scripting
A vulnerability was found in DataGear up to 4.5.1. It has been classified as problematic. This affects an unknown part of the component Diagram Type Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-224673 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-1772?
CVE-2023-1772 has been classified as problematic due to its potential for cross-site scripting vulnerabilities.
How do I fix CVE-2023-1772?
To fix CVE-2023-1772, update DataGear to version 4.5.2 or later, which addresses the vulnerability.
What components are affected by CVE-2023-1772?
CVE-2023-1772 affects the Diagram Type Handler component within DataGear versions up to 4.5.1.
Can CVE-2023-1772 be exploited remotely?
Yes, CVE-2023-1772 allows for remote exploitation, which can lead to cross-site scripting attacks.
What type of attack can CVE-2023-1772 initiate?
CVE-2023-1772 can facilitate cross-site scripting attacks that could compromise the security of affected applications.