ZeroHour

CVE-2023-33730

PoC
CVSS 3.1
9.8 critical
EPSS
1%p66
Published
()
Modified
Description

Privilege Escalation in the "GetUserCurrentPwd" function in Microworld Technologies eScan Management Console 14.0.1400.2281 allows any remote attacker to retrieve password of any admin or normal user in plain text format.

Vendors
escanav
Products
escan management console
Weakness
CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.