CVE-2023-31703
Published
CVSS v3
9
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT
Description
Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the from parameter.
CVE-2023-31703 | eScan Management Console 14.0.1400.2281 | XSS in "Edit User" form via the `from` parameter in the URL.