← Back

CVE-2017-11441

nvd nist
Published: Jul 19, 2017Modified: May 13, 2026

JSON object

Loading...
5.4
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

The WHM Upload Locale interface in cPanel before 56.0.51, 58.x before 58.0.52, 60.x before 60.0.45, 62.x before 62.0.27, 64.x before 64.0.33, and 66.x before 66.0.2 has XSS via a locale filename, aka SEC-297.

Affected (114)

Products: Cpanel: Whm
1 product
Whm
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 56.0.50
Configuration B
35 vulnerable
Vulnerable SoftwareAffected Versions
Cpanel
Version 58.0.11
Version 58.0.12
Version 58.0.13
Version 58.0.17
Version 58.0.19
Version 58.0.20
Version 58.0.23
Version 58.0.24
Version 58.0.25
Version 58.0.26
Version 58.0.27
Version 58.0.28
Version 58.0.29
Version 58.0.30
Version 58.0.31
Version 58.0.32
Version 58.0.34
Version 58.0.36
Version 58.0.37
Version 58.0.3
Version 58.0.41
Version 58.0.43
Version 58.0.44
Version 58.0.45
Version 58.0.46
Version 58.0.47
Version 58.0.48
Version 58.0.49
Version 58.0.4
Version 58.0.50
Version 58.0.51
Version 58.0.5
Version 58.0.6
Version 58.0.7
Version 58.0.8
Configuration C
32 vulnerable
Vulnerable SoftwareAffected Versions
Cpanel
Version 60.0.10
Version 60.0.11
Version 60.0.12
Version 60.0.13
Version 60.0.14
Version 60.0.15
Version 60.0.17
Version 60.0.18
Version 60.0.19
Version 60.0.22
Version 60.0.24
Version 60.0.25
Version 60.0.26
Version 60.0.27
Version 60.0.28
Version 60.0.31
Version 60.0.32
Version 60.0.34
Version 60.0.35
Version 60.0.36
Version 60.0.37
Version 60.0.38
Version 60.0.39
Version 60.0.3
Version 60.0.42
Version 60.0.43
Version 60.0.44
Version 60.0.4
Version 60.0.5
Version 60.0.6
Version 60.0.8
Version 60.0.9
Configuration D
20 vulnerable
Vulnerable SoftwareAffected Versions
Cpanel
Version 62.0.10
Version 62.0.11
Version 62.0.12
Version 62.0.14
Version 62.0.15
Version 62.0.16
Version 62.0.17
Version 62.0.19
Version 62.0.1
Version 62.0.20
Version 62.0.23
Version 62.0.24
Version 62.0.26
Version 62.0.2
Version 62.0.4
Version 62.0.5
Version 62.0.6
Version 62.0.7
Version 62.0.8
Version 62.0.9
Configuration E
25 vulnerable
Vulnerable SoftwareAffected Versions
Cpanel
Version 64.0.0
Version 64.0.11
Version 64.0.12
Version 64.0.13
Version 64.0.14
Version 64.0.15
Version 64.0.17
Version 64.0.18
Version 64.0.19
Version 64.0.1
Version 64.0.20
Version 64.0.21
Version 64.0.22
Version 64.0.24
Version 64.0.27
Version 64.0.28
Version 64.0.29
Version 64.0.2
Version 64.0.30
Version 64.0.31
Version 64.0.32
Version 64.0.3
Version 64.0.4
Version 64.0.7
Version 64.0.9
Configuration F
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 66.0.1

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.