Security Advisory

CVE-2004-1420

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-02-12 05:00:00
Last updated 2024-08-08 00:53:23
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in header.php in WHM AutoPilot 2.4.6.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) site_title or (2) http_images parameter.