Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the from parameter.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-35998 | Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the from parameter. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 22 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-22T17:18:08.263Z
Reserved: 2023-04-29T00:00:00.000Z
Link: CVE-2023-31703
Updated: 2024-08-02T14:56:35.415Z
Status : Modified
Published: 2023-05-17T13:15:09.617
Modified: 2025-01-22T18:15:18.163
Link: CVE-2023-31703
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD