Description
Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remote attacker to inject arbitrary code via the vulnerable parameters type, txtPolicyType, and Deletefileval.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-37886 | Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remote attacker to inject arbitrary code via the vulnerable parameters type, txtPolicyType, and Deletefileval. |
References
History
Fri, 10 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-10T14:58:17.894Z
Reserved: 2023-05-22T00:00:00.000Z
Link: CVE-2023-33732
Updated: 2024-08-02T15:47:06.518Z
Status : Modified
Published: 2023-05-31T20:15:10.677
Modified: 2025-01-10T15:15:13.520
Link: CVE-2023-33732
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD