Description
Parallels Plesk Panel 9.5 allows XSS in target/locales/tr-TR/help/index.htm? via the "fileName" parameter.
Remediation
References
Related Vulnerabilities
Python Out-of-bounds Read Vulnerability (CVE-2019-15903)
TYPO3 Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2009-3631)
ClipBucket Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-7665)
Oracle Application Server Other Vulnerability (CVE-2000-0169)