Multiple cross-site scripting (XSS) vulnerabilities in CMD_DOMAIN in JBMC Software DirectAdmin 1.403 allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via the (1) select0 or (2) select8 parameters.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Directadmin
Directadmin directadmin |
|
| CPEs | cpe:2.3:a:directadmin:directadmin:1.403:*:*:*:*:*:*:* | |
| Vendors & Products |
Jbmc-software
Jbmc-software directadmin |
Directadmin
Directadmin directadmin |
Status: PUBLISHED
Assigner: mitre
Published: 2012-07-03T22:00:00Z
Updated: 2024-09-16T23:46:32.392Z
Reserved: 2012-07-03T00:00:00Z
Link: CVE-2012-3842
No data.
Status : Analyzed
Published: 2012-07-03T22:55:03.037
Modified: 2025-12-05T20:11:23.780
Link: CVE-2012-3842
No data.