Multiple cross-site scripting (XSS) vulnerabilities in autoinstall4imagesgalleryupgrade.php in the Fantastico De Luxe Module for cPanel allow remote attackers to inject arbitrary web script or HTML via the (1) localapp, (2) updatedir, (3) scriptpath_show, (4) domain_show, (5) thispage, (6) thisapp, and (7) currentversion parameters in an Upgrade action.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-08-10T20:00:00
Updated: 2024-08-07T11:49:02.783Z
Reserved: 2009-08-10T00:00:00
Link: CVE-2008-6927
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-08-10T20:30:00.483
Modified: 2024-11-21T00:57:49.660
Link: CVE-2008-6927
Redhat
No data.