CVE-2009-4823
27.04.2010, 15:30
Cross-site scripting (XSS) vulnerability in frontend/x3/files/fileop.html in cPanel 11.0 through 11.24.7 allows remote attackers to inject arbitrary web script or HTML via the fileop parameter.
| Vendor | Product | Version |
|---|---|---|
| cpanel | cpanel | 11.0 |
| cpanel | cpanel | 11.4.19 |
| cpanel | cpanel | 11.16 |
| cpanel | cpanel | 11.18 |
| cpanel | cpanel | 11.18.1 |
| cpanel | cpanel | 11.18.2 |
| cpanel | cpanel | 11.18.3 |
| cpanel | cpanel | 11.18.4 |
| cpanel | cpanel | 11.19.3 |
| cpanel | cpanel | 11.21 |
| cpanel | cpanel | 11.21:beta |
| cpanel | cpanel | 11.22 |
| cpanel | cpanel | 11.22.1 |
| cpanel | cpanel | 11.22.2 |
| cpanel | cpanel | 11.22.3 |
| cpanel | cpanel | 11.24 |
| cpanel | cpanel | 11.24.7 |
𝑥
= Vulnerable software versions
References