ZeroHour

CVE-2018-6362

PoC ×2
CVSS 3.0
6.1 medium
EPSS
1%p63
Published
()
Modified
Description

Easy Hosting Control Panel (EHCP) v0.37.12.b has XSS via the domainop action parameter, as demonstrated by reading the PHPSESSID cookie.

Vendors
ehcp
Products
easy hosting control panel
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.