CVE-2023-31703

Published
View on NVD ↗
CVSS v3
9
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT

Description

Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the from parameter.

CVE-2023-31703 | eScan Management Console 14.0.1400.2281 | XSS in "Edit User" form via the `from` parameter in the URL.
GitHubGitHub
3