CVE-2023-3937: Snowsoftware Snow License Manager

Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Cross site scripting vulnerability in web portal in Snow Software License Manager from version 9.0.0 up to and including 9.30.1 on Windows allows an authenticated user with high privileges to trigger cross site scripting attack via the web browser

Affected products

  • Snowsoftware Snow License Manager: from 9.0.0, up to and including 9.30.1

Published 2023-08-11. Last modified 2026-06-17.