| New User, Welcome! Login |
cPanel XSS Vulnerability
| From: |
thomas jsthosting com |
| To: |
bugtraq securityfocus com |
| Cc: |
|
| Subject: |
cPanel XSS Vulnerability |
| Date: |
Wed - Jul 14, 2010 09:36 AM |
cPanel 11.25 is vulnerable to an XSS exploit as it fails to clean user-supplied input.
All versions prior to 47010 are affected. Please note that whilst this vulnerability is patched in version 47010, 47010 is currently on the bleeding-edge and isn't recommended for the stable environment.
Successful exploitation can result in user credentials being taken and being used to gain escalated privileges.
References: http://changelog.cpanel.net/?revision=0;tree=;treeview=;show=html;pp=50
|
|
|
Copyright © 1995-2012 LinuxRocket.net. All rights reserved.
Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!