cpanel

426 tracked vulnerabilities.

CVE-2016-10774 MEDIUM
cPanel < 60.0.25 - Stored Cross-Site Scripting in tail_ea4_migration.cgi Interface
Aug 05, 2019
CVSS 5.4
EPSS 0.00
CVE-2016-10773 HIGH
cPanel 59.9999.58-60.0.24 - Format String Injection in Exception Message Handling
Aug 05, 2019
CVSS 8.8
EPSS 0.00
CVE-2016-10772 LOW
cPanel 11.54.0.0-11.54.0.32 - Unauthenticated Feature Restriction Bypass via multilang adminbin
Aug 05, 2019
CVSS 3.3
EPSS 0.00
CVE-2016-10771 HIGH
cPanel 11.54.0.0-11.54.0.33 - Arbitrary File Creation and Permission Change via ModSecurity Audit Log Processing
Aug 05, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10770 MEDIUM
cPanel 11.54.0.0-11.54.0.33 - Arbitrary File Overwrite during Roundcube Update
Aug 05, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10769 MEDIUM
cPanel 11.54.0.0-11.54.0.33 - Open Redirect via FormMail-clone.cgi
Aug 05, 2019
CVSS 6.1
EPSS 0.00
CVE-2016-10768 MEDIUM
cPanel 11.54.0.0-11.54.0.32 - Arbitrary File Overwrite during MySQL Upgrade Preparation
Aug 05, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10767 MEDIUM
cPanel 11.54.0.0-11.54.0.32 - Stored Cross-Site Scripting in WHM Repair Mailbox Permissions Interface
Aug 05, 2019
CVSS 5.4
EPSS 0.00
CVE-2016-10826 HIGH
cPanel 11.50.0.4-11.50.5.2 - Two Factor Authentication Bypass via DNS Clustering Requests
Aug 01, 2019
CVSS 8.8
EPSS 0.00
CVE-2016-10821 MEDIUM
cPanel 11.50.0.4-11.50.5.1 - Password Exposure via Scripts/addpop Process List
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10820 HIGH
cPanel 11.50.0.4-11.50.5.2 - Improper Access Control via Daemon TTY Access
Aug 01, 2019
CVSS 8.8
EPSS 0.00
CVE-2016-10819 MEDIUM
cPanel 11.50.0.4-11.50.6.2 - Sensitive Information Exposure via Log File Rotation
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10818 MEDIUM
cPanel <57.9999.54 - Info Disclosure
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10817 CRITICAL
cPanel 11.50.0.4-11.50.6.2 - SQL Injection via ModSecurity TailWatch Log File
Aug 01, 2019
CVSS 9.8
EPSS 0.00
CVE-2016-10816 HIGH
cPanel 11.50.0.4-11.50.6.2 - Authenticated Remote Code Execution via Webmail Forwarders
Aug 01, 2019
CVSS 8.8
EPSS 0.01
CVE-2016-10815 MEDIUM
cPanel 11.50.0.4-11.50.6.2 - Unauthenticated Arbitrary File Read via Branding APIs
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10814 HIGH
cPanel 11.50.0.4-11.50.6.2 - Demo Mode Escape via show_template.stor
Aug 01, 2019
CVSS 8.8
EPSS 0.01
CVE-2016-10813 MEDIUM
cPanel 11.54.0.1-11.54.0.23 - Stored Cross-Site Scripting in FTP Account Creation
Aug 01, 2019
CVSS 5.4
EPSS 0.00
CVE-2016-10835 MEDIUM
cPanel 11.50.0.4-11.50.5.2 - Improper Authentication via Account Name Munging
Aug 01, 2019
CVSS 4.3
EPSS 0.00
CVE-2016-10834 HIGH
cPanel 11.50.0.4-11.50.5.2 - Account Suspension Bypass via FTP
Aug 01, 2019
CVSS 8.8
EPSS 0.00
CVE-2016-10833 HIGH
cPanel 11.50.0.4-11.50.5.2 - Improper Authentication via cPHulkd Username Blocking Bypass
Aug 01, 2019
CVSS 7.5
EPSS 0.00
CVE-2016-10832 MEDIUM
cPanel 11.50.0.4-11.50.5.2 - FTP cPHulk Bypass via Account Name Munging
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10831 HIGH
cPanel 11.54.0.0-11.54.0.19 - Improper Authentication via Two-Factor Authentication Bypass
Aug 01, 2019
CVSS 7.2
EPSS 0.01
CVE-2016-10830 HIGH
cPanel 11.50.0.4-11.50.5.2 - Access Control Bypass via magic_revision
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10829 MEDIUM
cPanel <55.9999.141 - Info Disclosure
Aug 01, 2019
CVSS 6.5
EPSS 0.00