Description
A GET-based XSS reflected vulnerability in Plesk Obsidian 18.0.17 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.
Remediation
References
Related Vulnerabilities
Apache Tomcat Other Vulnerability (CVE-2002-0936)
WordPress Plugin Your Text Manager Cross-Site Scripting (0.3.0)
WordPress Plugin Export any WordPress data to XML/CSV Cross-Site Scripting (1.3.5)
Joomla Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-8563)
WordPress Plugin EWWW Image Optimizer Cross-Site Request Forgery (5.8.1)