First published: Tue Feb 07 2006(Updated: )
Cross-site scripting (XSS) vulnerability in mime/handle.html in cPanel 10 allows remote attackers to inject arbitrary web script or HTML via the (1) file extension or (2) mime-type.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
cPanel | =10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0574 is considered to have a moderate severity due to its potential for cross-site scripting attacks.
To fix CVE-2006-0574, ensure you are using an updated version of cPanel that addresses the XSS vulnerability.
CVE-2006-0574 affects users of cPanel version 10 specifically.
CVE-2006-0574 can be exploited by attackers to inject arbitrary web script or HTML through manipulated file extensions or mime-types.
Exploitation of CVE-2006-0574 can lead to unauthorized actions on behalf of users, including data theft or session hijacking.