Vesta Control Panel through 0.9.8-22 has XSS via the edit/web/ domain parameter, the list/backup/ backup parameter, the list/rrd/ period parameter, the list/directory/ dir_a parameter, or the filename to the list/directory/ URI.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-24T21:00:00

Updated: 2024-08-05T11:16:00.092Z

Reserved: 2018-10-20T00:00:00

Link: CVE-2018-18547

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-10-24T21:29:01.047

Modified: 2018-12-04T17:28:06.430

Link: CVE-2018-18547

cve-icon Redhat

No data.