Lucene search

K
cve[email protected]CVE-2023-2139
HistoryApr 21, 2023 - 4:15 p.m.

CVE-2023-2139

2023-04-2116:15:07
CWE-79
web.nvd.nist.gov
24
cve-2023-2139
delmia apriso
xss
security vulnerability

6.1 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

0.0005 Low

EPSS

Percentile

18.4%

A reflected Cross-site Scripting (XSS) Vulnerability in DELMIA Apriso Release 2017 through Release 2022 allows an attacker to execute arbitrary script code.

Affected configurations

NVD
Node
3dsdelmia_aprisoRangerelease_2017–release_2022

CNA Affected

[
  {
    "vendor": "Dassault Systèmes",
    "product": "DELMIA Apriso",
    "versions": [
      {
        "status": "affected",
        "version": "Apriso 2017 Golden",
        "lessThanOrEqual": "Apriso 2017 SP7",
        "versionType": "custom"
      },
      {
        "status": "affected",
        "version": "Apriso 2018 Golden",
        "lessThanOrEqual": "Apriso 2018 SP4",
        "versionType": "custom"
      },
      {
        "status": "affected",
        "version": "Apriso 2019 Golden",
        "lessThanOrEqual": "Apriso 2019 SP5",
        "versionType": "custom"
      },
      {
        "status": "affected",
        "version": "Apriso 2020 Golden",
        "lessThanOrEqual": "Apriso 2020 SP4",
        "versionType": "custom"
      },
      {
        "status": "affected",
        "version": "Apriso 2021 Golden",
        "lessThanOrEqual": "Apriso 2021 SP1",
        "versionType": "custom"
      },
      {
        "status": "affected",
        "version": "Apriso 2022 Golden"
      }
    ],
    "defaultStatus": "unaffected"
  }
]

6.1 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

0.0005 Low

EPSS

Percentile

18.4%

Related for CVE-2023-2139