Multiple cross-site scripting (XSS) vulnerabilities in CMD_DOMAIN in JBMC Software DirectAdmin 1.403 allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via the (1) select0 or (2) select8 parameters.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2012-3789 | Multiple cross-site scripting (XSS) vulnerabilities in CMD_DOMAIN in JBMC Software DirectAdmin 1.403 allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via the (1) select0 or (2) select8 parameters. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 05 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Directadmin
Directadmin directadmin |
|
| CPEs | cpe:2.3:a:directadmin:directadmin:1.403:*:*:*:*:*:*:* | |
| Vendors & Products |
Jbmc-software
Jbmc-software directadmin |
Directadmin
Directadmin directadmin |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T23:46:32.392Z
Reserved: 2012-07-03T00:00:00.000Z
Link: CVE-2012-3842
No data.
Status : Analyzed
Published: 2012-07-03T22:55:03.037
Modified: 2025-12-05T20:11:23.780
Link: CVE-2012-3842
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD