Description
The cPanel is vulnerable to the XSS (cross-site scripting). The 'cpanelwebcall' endpoint does not properly sanitize user input.
Remediation
Upgrade to the latest version of cPanel
References
Related Vulnerabilities
PostgreSQL CVE-2023-5870 Vulnerability (CVE-2023-5870)
WordPress Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2007-6013)
MySQL CVE-2024-21232 Vulnerability (CVE-2024-21232)
SharePoint Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1860)
Oracle Database Server CVE-2019-2954 Vulnerability (CVE-2019-2954)