CVE-2023-33336

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
30/06/2023
Last modified:
07/11/2023

Description

Reflected cross site scripting (XSS) vulnerability was discovered in Sophos Web Appliance v4.3.9.1 that allows for arbitrary code to be inputted via the double quotes.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sophos:web_appliance:4.3.9.1:*:*:*:*:*:*:*