Show filters
425 Total Results
Displaying 271-280 of 425
Sort by:
Attacker Value
Unknown
CVE-2016-10844
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
The chcpass script in cPanel before 11.54.0.4 reveals a password hash (SEC-77).
0
Attacker Value
Unknown
CVE-2018-20934
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 70.0.23 does not prevent e-mail account suspensions from being applied to unowned accounts (SEC-411).
0
Attacker Value
Unknown
CVE-2018-20927
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 70.0.23 allows jailshell escape because of incorrect crontab parsing (SEC-382).
0
Attacker Value
Unknown
CVE-2016-10839
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 11.54.0.4 allows SQL injection in bin/horde_update_usernames (SEC-71).
0
Attacker Value
Unknown
CVE-2016-10848
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 11.54.0.4 allows arbitrary file-overwrite operations in scripts/quotacheck (SEC-81).
0
Attacker Value
Unknown
CVE-2018-20907
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 71.9980.37 does not enforce the Mime::list_hotlinks API feature restriction (SEC-432).
0
Attacker Value
Unknown
CVE-2018-20902
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 71.9980.37 allows attackers to read root's crontab file by leveraging ClamAV installation (SEC-408).
0
Attacker Value
Unknown
CVE-2018-20914
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
In cPanel before 70.0.23, OpenID providers can inject arbitrary data into cPanel session files (SEC-368).
0
Attacker Value
Unknown
CVE-2018-20912
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 70.0.23 allows demo accounts to execute code via awstats (SEC-362).
0
Attacker Value
Unknown
CVE-2018-20909
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
cPanel before 70.0.23 allows arbitrary file-chmod operations during legacy incremental backups (SEC-338).
0