Show filters
425 Total Results
Displaying 11-20 of 425
Sort by:
Attacker Value
Unknown
CVE-2021-26267
Disclosure Date: January 26, 2021 (last updated November 28, 2024)
cPanel before 92.0.9 allows a MySQL user (who has an old-style password hash) to bypass suspension (SEC-579).
0
Attacker Value
Unknown
CVE-2020-29136
Disclosure Date: November 27, 2020 (last updated February 22, 2025)
In cPanel before 90.0.17, 2FA can be bypassed via a brute-force approach (SEC-575).
0
Attacker Value
Unknown
CVE-2020-29135
Disclosure Date: November 27, 2020 (last updated February 22, 2025)
cPanel before 90.0.17 has multiple instances of URL parameter injection (SEC-567).
0
Attacker Value
Unknown
CVE-2020-29137
Disclosure Date: November 27, 2020 (last updated February 22, 2025)
cPanel before 90.0.17 allows self-XSS via the WHM Transfer Tool interface (SEC-577).
0
Attacker Value
Unknown
CVE-2020-26115
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
cPanel before 90.0.10 allows self XSS via the Cron Editor interface (SEC-574).
0
Attacker Value
Unknown
CVE-2020-26114
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
cPanel before 90.0.10 allows self XSS via the Cron Jobs interface (SEC-573).
0
Attacker Value
Unknown
CVE-2020-26099
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
cPanel before 88.0.3 allows attackers to bypass the SMTP greylisting protection mechanism (SEC-491).
0
Attacker Value
Unknown
CVE-2020-26108
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
cPanel before 88.0.13 mishandles file-extension dispatching, leading to code execution (SEC-488).
0
Attacker Value
Unknown
CVE-2020-26102
Disclosure Date: September 25, 2020 (last updated November 28, 2024)
In cPanel before 88.0.3, an insecure auth policy API key is used by Dovecot on a templated VM (SEC-550).
0
Attacker Value
Unknown
CVE-2020-26105
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
In cPanel before 88.0.3, insecure chkservd test credentials are used on a templated VM (SEC-554).
0