CVE-2006-0573: XSS
Multiple cross-site scripting (XSS) vulnerabilies in cPanel 10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to (a) editquota.html or (b) dodelpop.html; (2) showtree parameter to (c) diskusage.html; or the (3) mon, (4) year, (5) target, or (6) domain parameter to (d) stats/detailbw.html.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0573?
CVE-2006-0573 is classified as a high severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2006-0573?
To fix CVE-2006-0573, update your cPanel installation to the latest version that addresses these XSS vulnerabilities.
What are the affected versions by CVE-2006-0573?
CVE-2006-0573 affects multiple versions of cPanel including versions 5.0 through 10.0.
What kind of attacks can be performed using CVE-2006-0573?
Exploiting CVE-2006-0573 allows attackers to inject arbitrary web scripts or HTML, potentially leading to session hijacking and data theft.
Is CVE-2006-0573 still a threat today?
While CVE-2006-0573 pertains to older versions of cPanel, systems still using these versions remain vulnerable until they are upgraded.