Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-3505

Cross-site scripting (XSS) vulnerability in the Entropy Chat script in cPanel 10.2.0-R82 and 10.6.0-R137 allows remote attackers to inject arbitrary web script or HTML via a chat message containing Javascript in style attributes in tags such as <b>, which are processed by Internet Explorer.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 78.5%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2005-3505
  • Cpanel » Cpanel » Version: 10.2.0_r82
    cpe:2.3:a:cpanel:cpanel:10.2.0_r82
  • Cpanel » Cpanel » Version: 10.6.0_r137
    cpe:2.3:a:cpanel:cpanel:10.6.0_r137


Contact Us

Shodan ® - All rights reserved