CVE 5.1 MEDIUM

Gstarsoft GstarCAD File Renaming cross site scripting_CVE-2025-11137

5.1 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P

Description

A vulnerability has been found in Gstarsoft GstarCAD up to 9.4.0. This affects an unknown function of the component File Renaming Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Applying a patch is the recommended action to fix this issue.

Basic Information

ID CVE-2025-11137
Source VulDB
Published Sep 29, 2025 at 02:32

Affected Product

Vendor Gstarsoft
Product GstarCAD
Version 9.0
Affected Versions Gstarsoft GstarCAD 9.0
Gstarsoft GstarCAD 9.1
Gstarsoft GstarCAD 9.2
Gstarsoft GstarCAD 9.3
Gstarsoft GstarCAD 9.4.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.