sahiloj/CVE-2023-31703

sahiloj/CVE-2023-31703

Releases0
Stars3
CVE-2023-31703 | eScan Management Console 14.0.1400.2281 | XSS in "Edit User" form via the `from` parameter in the URL.

CVE History

CVEPublishedCVSS v3CVSS v2
9 CRITICAL

Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the from parameter.