CVE-2019-10261: XSS
Published Apr 3, 2019
·Updated
CentOS Web Panel (CWP) 0.9.8.789 is vulnerable to Stored/Persistent XSS for the "Name Server 1" and "Name Server 2" fields via a "DNS Functions" "Edit Nameservers IPs" action.
Affected Software
1 affected component
CentOS-WebPanel CentOS Web Panel=0.9.8.789
Event History
Apr 3, 2019
CVE Published
via MITRE·02:07 PM
Data Sourced
via MITRE·02:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-10261?
CVE-2019-10261 is classified as a moderate severity vulnerability due to its potential for stored cross-site scripting attacks.
2
How do I fix CVE-2019-10261?
To fix CVE-2019-10261, update CentOS Web Panel to a version that addresses the persistent XSS vulnerability.
3
What components are affected by CVE-2019-10261?
CVE-2019-10261 affects CentOS Web Panel version 0.9.8.789 specifically in the DNS Functions section.
4
What type of attack is CVE-2019-10261 associated with?
CVE-2019-10261 is associated with stored or persistent cross-site scripting (XSS) attacks.
5
Can CVE-2019-10261 be exploited remotely?
Yes, the stored XSS vulnerability in CVE-2019-10261 can potentially be exploited remotely by an attacker.