Stored/Persistent XSS in CentOS Web Panel (CWP) 0.9.8.789 via Edit Nameservers IPs action

Stored/Persistent XSS in CentOS Web Panel (CWP) 0.9.8.789 via Edit Nameservers IPs action

CVE-2019-10261 · LOW Severity

AV:N/AC:M/AU:S/C:N/I:P/A:N

CentOS Web Panel (CWP) 0.9.8.789 is vulnerable to Stored/Persistent XSS for the "Name Server 1" and "Name Server 2" fields via a "DNS Functions" "Edit Nameservers IPs" action.

Learn more about our Web App Pen Testing.