Medium severity6.1NVD Advisory· Published May 11, 2018· Updated Jun 17, 2026
CVE-2018-6362
CVE-2018-6362
Description
Easy Hosting Control Panel (EHCP) v0.37.12.b has XSS via the domainop action parameter, as demonstrated by reading the PHPSESSID cookie.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: = 0.37.12.b
- cpe:2.3:a:ehcp:easy_hosting_control_panel:0.37.12.b:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- hyp3rlinx.altervista.org/advisories/EHCP-v0.37.12.b-XSS-COOKIE-THEFT.txtnvdExploitThird Party Advisory
- packetstormsecurity.com/files/147554/Easy-Hosting-Control-Panel-0.37.12.b-Cross-Site-Scripting-Cookie-Theft.htmlnvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.