CVE-2018-16236
30.08.2018, 22:29
cPanel through 74 allows XSS via a crafted filename in the logs subdirectory of a user account, because the filename is mishandled during frontend/THEME/raw/index.html rendering.
| Vendor | Product | Version |
|---|---|---|
| cpanel | cpanel | 𝑥 ≤ 74 |
𝑥
= Vulnerable software versions