Medium severity6.1NVD Advisory· Published May 31, 2023· Updated Jun 17, 2026
CVE-2023-33732
CVE-2023-33732
Description
Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remote attacker to inject arbitrary code via the vulnerable parameters type, txtPolicyType, and Deletefileval.
Affected products
3- cpe:2.3:a:escanav:escan_management_console:14.0.1400.2281:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 14.0.1400.2281
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.