CVE-2006-0574
Cross-site scripting (XSS) vulnerability in mime/handle.html in cPanel 10 allows remote attackers to inject arbitrary web script or HTML via the (1) file extension or (2) mime-type.
Date published : 2006-02-07
http://www.securityfocus.com/archive/1/424148/100/0/threaded
http://archives.neohapsis.com/archives/fulldisclosure/2006-02/0062.html