CVE-2004-1849: XSS
Published Mar 24, 2004
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to dodelautores.html or (2) handle parameter to addhandle.html.
Affected Software
1 affected component
Cpanel Cpanel=9.1
Event History
Mar 24, 2004
CVE Published
05:00 AM
May 10, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1849?
CVE-2004-1849 has a moderate severity rating due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2004-1849?
To fix CVE-2004-1849, upgrade cPanel to a version beyond 9.1.0 that addresses the XSS vulnerabilities.
3
What systems are affected by CVE-2004-1849?
CVE-2004-1849 affects cPanel version 9.1.0.
4
What types of vulnerabilities are present in CVE-2004-1849?
CVE-2004-1849 contains multiple cross-site scripting (XSS) vulnerabilities.
5
Who can exploit CVE-2004-1849?
Remote attackers can exploit CVE-2004-1849 to inject arbitrary web script or HTML.