CVE-2018-6362

Publication date

2018-05-11 21:00:00

Family

mitre

State

PUBLISHED

Description

Easy Hosting Control Panel (EHCP) v0.37.12.b has XSS via the domainop action parameter, as demonstrated by reading the PHPSESSID cookie.