Cross-site scripting (XSS) vulnerability in CMD_USER_STATS in DirectAdmin allows remote attackers to inject arbitrary web script or HTML via the RESULT parameter, a different vector than CVE-2006-5983.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/33023 | vdb entry |
http://osvdb.org/34273 | vdb entry |
http://www.vupen.com/english/advisories/2007/1037 | vdb entry |
http://www.securityfocus.com/archive/1/463003/100/0/threaded | mailing list |
http://secunia.com/advisories/24551 | third party advisory |
http://www.securityfocus.com/bid/22996 | vdb entry |