CVE-2006-3337: XSS
Published Jul 3, 2006
·Updated
Cross-site scripting (XSS) vulnerability in frontend/x/files/select.html in cPanel 10.8.2-CURRENT 118 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter.
Affected Software
1 affected component
Cpanel Cpanel<=10.8.2_current_118
Event History
Jul 3, 2006
CVE Published
06:05 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3337?
CVE-2006-3337 has a moderate severity level due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2006-3337?
To fix CVE-2006-3337, upgrade cPanel to version 10.8.2 or later to close the vulnerability.
3
What software is affected by CVE-2006-3337?
CVE-2006-3337 affects cPanel versions 10.8.2-CURRENT 118 and earlier.
4
What type of vulnerability is CVE-2006-3337?
CVE-2006-3337 is a cross-site scripting (XSS) vulnerability.
5
Can CVE-2006-3337 allow for unauthorized access?
Yes, CVE-2006-3337 can allow remote attackers to inject arbitrary web scripts, potentially leading to unauthorized actions on behalf of users.