← Back

CVE-2023-4296

nvd nist
Published: Aug 29, 2023Modified: Feb 13, 2025

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

​If an attacker tricks an admin user of PTC Codebeamer into clicking on a malicious link, it may allow the attacker to inject arbitrary code to be executed in the browser on the target device.

Affected (29)

Products: Intland: Codebeamer
1 product
Codebeamer
Configuration A
29 vulnerable
Vulnerable SoftwareAffected Versions
Intland
Version 21.09.0
Version 21.09.0 sp10
Version 21.09.0 sp11
Version 21.09.0 sp12
Version 21.09.0 sp13
Version 21.09.0 sp1
Version 21.09.0 sp2
Version 21.09.0 sp3
Version 21.09.0 sp4
Version 21.09.0 sp5
Version 21.09.0 sp6
Version 21.09.0 sp7
Version 21.09.0 sp8
Version 21.09.0 sp9
Version 22.04.0
Version 22.04.0 sp1
Version 22.04.0 sp2
Version 22.04.0 sp3
Version 22.04.0 sp4
Version 22.04.0 sp5
Version 22.10.0
Version 22.10.0 sp1
Version 22.10.0 sp2
Version 22.10.0 sp3
Version 22.10.0 sp4
Version 22.10.0 sp5
Version 22.10.0 sp6
Version 22.10.0 sp7
Version 22.10.0 sp8

References (8)

Source: ics-cert@hq.dhs.gov
Vendor Advisory
Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.