Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0-R85 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to testfile.html, (2) file parameter to erredit.html, (3) dns parameter to dnslook.html, (4) account parameter to ignorelist.html, (5) account parameter to showlog.html, (6) db parameter to repairdb.html, (7) login parameter to doaddftp.html (8) account parameter to editmsg.htm, or (9) ip parameter to del.html. NOTE: the dnslook.html vector was later reported to exist in cPanel 10.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CPanel DNSlook.HTML跨站脚本攻击漏洞
Vulnerability Description
cPanel 9.1.0-R85版本存在多个跨站脚本攻击(XSS)漏洞。远程攻击者借助(1)testfile.html的email参数,(2)erredit.html的file参数,(3)dnslook.html的dns参数,(4)ignorelist.html的account参数,(5)showlog.html的account参数,(6)repairdb.html的db参数,(7)doaddftp.html的login参数(8)editmsg.htm的account参数,或(9)del.html的ip参
CVSS Information
N/A
Vulnerability Type
N/A