CVE-2013-0129: Pd-Admin
Low severity, CVSS 3.5. EPSS: 0.8% chance of exploitation in the next 30 days.
Multiple cross-site scripting (XSS) vulnerabilities in pd-admin before 4.17 allow remote authenticated users to inject arbitrary web script or HTML via (1) the WebFTP Overview "Create new directory" field or (2) the body of an e-mail autoresponder message.
Affected products
- Pd-Admin Pd-Admin: up to and including 4.16
Published 2013-04-19. Last modified 2026-06-16.