First published: Fri May 19 2023(Updated: )
A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x allows an attacker to execute arbitrary script code.
Credit: 3DS.Information-Security@3ds.com
Affected Software | Affected Version | How to fix |
---|---|---|
3DExperience by Dassault Systèmes | >=r2018x<=r2023x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
Vulnerability CVE-2023-1996 is a reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x.
An attacker can exploit vulnerability CVE-2023-1996 by executing arbitrary script code through a reflected Cross-site Scripting (XSS) attack.
The severity of vulnerability CVE-2023-1996 is medium with a CVSS score of 6.1.
Vulnerability CVE-2023-1996 affects Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x.
More information about vulnerability CVE-2023-1996 can be found at the following link: [https://www.3ds.com/vulnerability/advisories](https://www.3ds.com/vulnerability/advisories)