Sploitus

CVE-2004-2308

1 known exploit for CVE-2004-2308

Cross-site scripting (XSS) vulnerability in cPanel 9.1.0 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the dir parameter in dohtaccess.html.

Affected products
Cpanel
Cpanel
= 5.0, 5.3, 6.0, 6.2, 6.4, 6.4.1, 6.4.2, 6.4.2_stable_48, 7.0, 8.0, 9.0, 9.1
Fix
Available
CVSS 2.0
4.3 MEDIUM
EPSS
1.7% (75th percentile)
NVD status
Modified
Published
2005-08-16
CVE-2004-2308 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2004-2308

Proof-of-concept code and exploit modules indexed by Sploitus