CVE-2009-4823
Cpanel - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in frontend/x3/files/fileop.html in cPanel 11.0 through 11.24.7 allows remote attackers to inject arbitrary web script or HTML via the fileop parameter.
Exploits (1)
References (6)
Scores
EPSS
0.0137
EPSS Percentile
80.0%
Classification
CWE
CWE-79
Status
published
Affected Products (18)
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
cpanel/cpanel
... and 3 more
Timeline
Published
Apr 27, 2010
Tracked Since
Feb 18, 2026