CVE-2018-16236
EUVD-2018-808830.08.2018, 22:29
cPanel through 74 allows XSS via a crafted filename in the logs subdirectory of a user account, because the filename is mishandled during frontend/THEME/raw/index.html rendering.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cpanel | cpanel | 𝑥 ≤ 74 |
𝑥
= Vulnerable software versions