2.6
CVE-2006-3337
- EPSS 2.12%
- Veröffentlicht 03.07.2006 18:05:00
- Zuletzt bearbeitet 16.06.2026 22:26:52
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in frontend/x/files/select.html in cPanel 10.8.2-CURRENT 118 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.12% | 0.795 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:P/A:N
|
http://bugzilla.cpanel.net/show_bug.cgi?id=4282
http://secunia.com/advisories/20840
http://securitytracker.com/id?1016383
http://www.securityfocus.com/archive/1/438355/100/0/threaded
http://www.securityfocus.com/archive/1/438477/100/0/threaded
http://www.securityfocus.com/bid/18655
http://www.vupen.com/english/advisories/2006/2547
https://exchange.xforce.ibmcloud.com/vulnerabilities/27403