New User, Welcome!     Login

cPanel XSS Vulnerability

Related Terms:
exploitation versions
From: thomas jsthosting com
To: bugtraq securityfocus com
Cc:
Subject: cPanel XSS Vulnerability
Date: Wed - Jul 14, 2010 09:36 AM


cPanel 11.25 is vulnerable to an XSS exploit as it fails to clean user-supplied input.

All versions prior to 47010 are affected. Please note that whilst this vulnerability is patched in version 47010, 47010 is currently on the bleeding-edge and isn't recommended for the stable environment.

Successful exploitation can result in user credentials being taken and being used to gain escalated privileges.

References: http://changelog.cpanel.net/?revision=0;tree=;treeview=;show=html;pp=50




Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!