CVE-2005-3505: XSS
Cross-site scripting (XSS) vulnerability in the Entropy Chat script in cPanel 10.2.0-R82 and 10.6.0-R137 allows remote attackers to inject arbitrary web script or HTML via a chat message containing Javascript in style attributes in tags such as <b>, which are processed by Internet Explorer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3505?
CVE-2005-3505 is classified as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2005-3505?
To fix CVE-2005-3505, update cPanel to a version that is patched against this XSS vulnerability.
What are the affected software versions for CVE-2005-3505?
CVE-2005-3505 affects cPanel versions 10.2.0-R82 and 10.6.0-R137.
What type of vulnerability is CVE-2005-3505?
CVE-2005-3505 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
Can CVE-2005-3505 affect users of Internet Explorer?
Yes, CVE-2005-3505 can affect users of Internet Explorer due to its handling of chat messages with script injections.