VYPR
Medium severity6.1NVD Advisory· Published May 31, 2023· Updated Jun 17, 2026

CVE-2023-33732

CVE-2023-33732

Description

Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remote attacker to inject arbitrary code via the vulnerable parameters type, txtPolicyType, and Deletefileval.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.