ISPConfig 3.3.0 is vulnerable to Cross Site Scripting (XSS) via the system status webpage.
Metrics
Affected Vendors & Products
References
History
Tue, 05 May 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting via ISPConfig 3.3.0 System Status Page |
Tue, 05 May 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 05 May 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Scripting via ISPConfig 3.3.0 System Status Page | |
| First Time appeared |
Ispconfig
Ispconfig ispconfig |
|
| Weaknesses | CWE-79 | |
| Vendors & Products |
Ispconfig
Ispconfig ispconfig |
Tue, 05 May 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ISPConfig 3.3.0 is vulnerable to Cross Site Scripting (XSS) via the system status webpage. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-05T18:58:11.246Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-52206
Updated: 2026-05-05T18:57:25.366Z
Status : Received
Published: 2026-05-05T16:16:09.633
Modified: 2026-05-05T20:16:35.083
Link: CVE-2025-52206
No data.
OpenCVE Enrichment
Updated: 2026-05-05T21:00:10Z