Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary web script or HTML via the Subject field.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Helm_control_panel | Webhost_automation | 3.1.11 | 3.1.11 |
Helm_control_panel | Webhost_automation | 3.1.19 | 3.1.19 |
Helm_control_panel | Webhost_automation | 3.1.10 | 3.1.10 |
Helm_control_panel | Webhost_automation | 3.1.17 | 3.1.17 |
Helm_control_panel | Webhost_automation | 3.1.18 | 3.1.18 |
Helm_control_panel | Webhost_automation | 3.1.16 | 3.1.16 |
Helm_control_panel | Webhost_automation | 3.1.13 | 3.1.13 |
Helm_control_panel | Webhost_automation | 3.1.12 | 3.1.12 |
Helm_control_panel | Webhost_automation | 3.1.14 | 3.1.14 |
Helm_control_panel | Webhost_automation | 3.1.15 | 3.1.15 |