漏洞关键信息 漏洞描述 名称: Cross-Site Scripting (XSS) in CentOS 4.2 i686 - WHM X v3.1.0 发布日期: 2006.12.14 风险等级: Low 漏洞评估 CVSS Base Score: 3.5/10 风险因素: - Impact Subscore: 2.9/10 - Confidentiality Impact: None - Integrity Impact: Partial - Availability Impact: None - Exploitability Subscore: 6.8/10 - Access Vector: Remote - Authentication: Single time - Attack Complexity: Medium 漏洞细节 涉及软件: WebHost Manager (WHM) 测试版本: WHM X v3.1.0 漏洞利用方式: - 攻击者必须认证 (Attacker must be authenticated) - 部分示例URLs: - - - - 说明来源 Aria-Security Team 更多详情参见: 原始公告