Record summary

CVE-2019-10261 has a selected CVSS score of 4.8 (medium); EIP currently links 1 catalogued exploit.

Description

CentOS Web Panel (CWP) 0.9.8.789 is vulnerable to Stored/Persistent XSS for the "Name Server 1" and "Name Server 2" fields via a "DNS Functions" "Edit Nameservers IPs" action.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBCentOS Web Panel 0.9.8.789 - NameServer Field Persistent Cross-Site ScriptingExploitDB exploitby DKMNot analyzed1 file
ExploitDB

PoC details

References

4