ISPConfig 3.3.0 is vulnerable to Cross Site Scripting (XSS) via the system status webpage.
References
| Link | Resource |
|---|---|
| https://www.ispconfig.org/blog/ispconfig-3-3-0p2-released-security-update/ | Patch Release Notes |
Configurations
History
No history.
Information
Published : 2026-05-05 16:16
Updated : 2026-07-05 02:16
NVD link : CVE-2025-52206
Mitre link : CVE-2025-52206
CVE.ORG link : CVE-2025-52206
JSON object : View
Products Affected
ispconfig
- ispconfig
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
