Description
The cPanel is vulnerable to the XSS (cross-site scripting). The 'cpanelwebcall' endpoint does not properly sanitize user input.
Remediation
Upgrade to the latest version of cPanel
References
Related Vulnerabilities
Oracle JRE CVE-2013-5851 Vulnerability (CVE-2013-5851)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-2853)
OpenVPN AS Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2020-36382)
Liferay Portal Incorrect Authorization Vulnerability (CVE-2024-38002)