CVE-2006-0573
Multiple cross-site scripting (XSS) vulnerabilies in cPanel 10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to (a) editquota.html or (b) dodelpop.html; (2) showtree parameter to (c) diskusage.html; or the (3) mon, (4) year, (5) target, or (6) domain parameter to (d) stats/detailbw.html.
- Affected products
- Cpanel
- Cpanel
- = 5.0, 5.3, 6.0, 6.2, 6.4, 6.4.1, 6.4.2, 6.4.2_stable_48, 7.0, 8.0, 9.0, 9.1, 10
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 2.6% (84th percentile)
- NVD status
- Modified
- Published
- 2006-02-07
CVE-2006-0573 at NVD
No indexed exploits for CVE-2006-0573 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2006-0573 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.