3.5

CVE-2006-5883

Exploit
Multiple cross-site scripting (XSS) vulnerabilities in cPanel 10 allow remote authenticated users to inject arbitrary web script or HTML via the (1) dir parameter in (a) seldir.html, and the (2) user and (3) dir parameters in (b) newuser.html.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CpanelCpanel Version10
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.72% 0.744
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 3.5 6.8 2.9
AV:N/AC:M/Au:S/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://aria-security.net/advisory/cpanel.txt
Vendor Advisory
Exploit
http://secunia.com/advisories/22825
http://securityreason.com/securityalert/1847
http://www.osvdb.org/30386
http://www.osvdb.org/30387
http://www.securityfocus.com/archive/1/451374/100/0/threaded
http://www.securityfocus.com/bid/21027
Exploit
http://www.vupen.com/english/advisories/2006/4500