CVE-2012-3842: XSS
Published Jul 3, 2012
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in CMDDOMAIN in JBMC Software DirectAdmin 1.403 allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via the (1) select0 or (2) select8 parameters.
Affected Software
2 affected components
Jbmc-software Directadmin=1.403
DirectAdmin DirectAdmin=1.403
Event History
Jul 3, 2012
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2012-3842?
CVE-2012-3842 is classified as a medium severity vulnerability due to the potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2012-3842?
To fix CVE-2012-3842, update to a patched version of DirectAdmin that addresses these XSS vulnerabilities.
3
Who is affected by CVE-2012-3842?
CVE-2012-3842 affects remote authenticated users of JBMC Software DirectAdmin 1.403 with certain privileges.
4
What types of vulnerabilities are present in CVE-2012-3842?
CVE-2012-3842 contains multiple cross-site scripting (XSS) vulnerabilities.
5
Can CVE-2012-3842 be exploited remotely?
Yes, CVE-2012-3842 can be exploited remotely by authenticated users.