|
CPanel User and Dir Parameters Multiple Cross-Site Scripting Vulnerabilities
Attackers can exploit these issues via a web client. The following proof-of-concept URIs are available: http://www.example.com/frontend/files/seldir.html?dir=[XSS] http://www.example.com/frontend/htaccess/newuser.html?user=[XSS]&pass=&dir=A VALID FOLDER http://www.example.com/frontend/htaccess/newuser.html?user=[XSS]&pass=&dir=[XSS] |
|
Privacy Statement |