Description
Cross-site scripting (XSS) vulnerability in service/graph_html.php in the administrator panel in LiteSpeed Web Server 4.1.11 allows remote attackers to inject arbitrary web script or HTML via the gtitle parameter.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2014-0451 Vulnerability (CVE-2014-0451)
WebLogic Improper Handling of Exceptional Conditions Vulnerability (CVE-2017-5638)
Claroline Other Vulnerability (CVE-2006-3257)
Oracle Application Server Other Vulnerability (CVE-2007-1609)
WordPress Improper Input Validation Vulnerability (CVE-2011-4957)