Show filters
425 Total Results
Displaying 241-250 of 425
Sort by:
Attacker Value
Unknown

CVE-2016-10828

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 55.9999.141 allows arbitrary code execution because of an unsafe @INC path (SEC-97).
0
Attacker Value
Unknown

CVE-2018-20944

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 68.0.27 allows attackers to read a copy of httpd.conf that is created during a syntax test (SEC-353).
0
Attacker Value
Unknown

CVE-2016-10830

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 55.9999.141 allows ACL bypass for AppConfig applications via magic_revision (SEC-100).
0
Attacker Value
Unknown

CVE-2016-10823

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 55.9999.141 allows arbitrary code execution in the context of the root account because of MakeText interpolation (SEC-89).
0
Attacker Value
Unknown

CVE-2018-20938

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 68.0.27 does not enforce ownership during addpkgext and delpkgext WHM API calls (SEC-324).
0
Attacker Value
Unknown

CVE-2018-20952

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 68.0.27 creates world-readable files during use of WHM Apache Includes Editor (SEC-388).
0
Attacker Value
Unknown

CVE-2016-10834

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 55.9999.141 allows account-suspension bypass via ftp (SEC-105).
0
Attacker Value
Unknown

CVE-2018-20948

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 68.0.27 allows self XSS in cPanel Backup Restoration (SEC-383).
0
Attacker Value
Unknown

CVE-2018-20946

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 68.0.27 allows attackers to read zone information because a world-readable archive is created by the archive_sync_zones script (SEC-355).
0
Attacker Value
Unknown

CVE-2016-10847

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 11.54.0.4 allows arbitrary file-read and file-write operations via scripts/fixmailboxpath (SEC-80).
0