A vulnerability was found in Microweber 2.0.9. It has been classified as problematic. Affected is an unknown function of the file /admin/module/view?type=users. The manipulation of the argument First Name/Last Name leads to cross site scripting.
This vulnerability is traded as CVE-2024-33299. It is possible to launch the attack remotely. There is no exploit available.