CVE-2023-33335: XSS
Cross Site Scripting (XSS) in Sophos Sophos iView (The EOL was December 31st 2020) in grpname parameter that allows arbitrary script to be executed.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-33335?
CVE-2023-33335 is a vulnerability that allows arbitrary script to be executed in Sophos iView through the grpname parameter.
What is the severity of CVE-2023-33335?
The severity of CVE-2023-33335 is medium with a severity value of 6.1.
How does CVE-2023-33335 affect Sophos iView?
CVE-2023-33335 affects Sophos iView by allowing arbitrary script execution through the grpname parameter.
What is the Common Weakness Enumeration (CWE) associated with CVE-2023-33335?
The CWE associated with CVE-2023-33335 is CWE-79, which is a vulnerability related to Cross-Site Scripting (XSS).
How can I mitigate the risk of CVE-2023-33335 in Sophos iView?
To mitigate the risk of CVE-2023-33335 in Sophos iView, apply the latest patches or updates provided by Sophos and consider implementing input validation to prevent malicious script execution.