Home/Product/escanav escan management console
Product

escanav escan management console

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-42919
all versions
eScan Management Console 14.0.1400.2281 is vulnerable to Incorrect Access Control via acteScanAVReport.
9.8CRITICAL
CVE-2023-34838
all versions
A Cross Site Scripting vulnerability in Microworld Technologies eScan Management console v.14.0.1400.2281 allows a remote attacker
5.4MEDIUM
CVE-2023-34837
all versions
A Cross Site Scripting vulnerability in Microworld Technologies eScan Management console v.14.0.1400.2281 allows a remote attacker
5.4MEDIUM
CVE-2023-34836
all versions
A Cross Site Scripting vulnerability in Microworld Technologies eScan Management console v.14.0.1400.2281 allows a remote attacker
5.4MEDIUM
CVE-2023-34835
all versions
A Cross Site Scripting vulnerability in Microworld Technologies eScan Management console v.14.0.1400.2281 allows a remote attacker
5.4MEDIUM
CVE-2023-33731
all versions
Reflected Cross Site Scripting (XSS) in the view dashboard detail feature in Microworld Technologies eScan management console 14.0
6.1MEDIUM
CVE-2023-33732
all versions
Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 allows a remo
6.1MEDIUM
CVE-2023-33730
all versions
Privilege Escalation in the "GetUserCurrentPwd" function in Microworld Technologies eScan Management Console 14.0.1400.2281 allows
9.8CRITICAL
CVE-2023-31703
all versions
Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote
9.0CRITICAL
CVE-2023-31702
all versions
SQL injection in the View User Profile in MicroWorld eScan Management Console 14.0.1400.2281 allows remote attacker to dump entire
7.2HIGH
CVE-2008-1221
all versions
Absolute path traversal vulnerability in the FTP server in MicroWorld eScan Corporate Edition 9.0.742.98 and eScan Management Cons
threatengine.sh