cpanel

426 tracked vulnerabilities.

CVE-2016-10828 HIGH
cPanel 11.50.0.4-11.50.5.2 - Remote Code Execution via Unsafe @INC Path
Aug 01, 2019
CVSS 8.8
EPSS 0.02
CVE-2016-10827 MEDIUM
cPanel 11.50.0.4-11.50.5.2 - Stored Cross-Site Scripting in WHM Edit System Mail Preferences
Aug 01, 2019
CVSS 5.4
EPSS 0.00
CVE-2016-10825 HIGH
cPanel 11.50.0.4-11.50.5.2 - Security Policy Bypass via Fake Static Documents
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10824 CRITICAL
cPanel 11.50.0.4-11.50.5.1 - Unauthenticated Remote Code Execution via DNS NS Entry Poisoning
Aug 01, 2019
CVSS 9.8
EPSS 0.01
CVE-2016-10823 HIGH
cPanel 11.50.0.4-11.50.5.2 - Remote Code Execution via MakeText Interpolation
Aug 01, 2019
CVSS 8.8
EPSS 0.01
CVE-2016-10822 MEDIUM
cPanel 11.50.0.4-11.50.5.2 - Stored Cross-Site Scripting in X3 Reseller Branding Images
Aug 01, 2019
CVSS 5.4
EPSS 0.00
CVE-2016-10849 MEDIUM
cPanel 11.48.0.5-11.48.5.2 - Command Injection via scripts/secureit
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10848 HIGH
cPanel 11.48.0.5-11.48.5.2 - Arbitrary File Overwrite in quotacheck Script
Aug 01, 2019
CVSS 7.2
EPSS 0.00
CVE-2016-10847 HIGH
cPanel 11.48.0.5-11.48.5.2 - Arbitrary File Read and Write via fixmailboxpath Script
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10846 HIGH
cPanel <11.54.0.4 - Privilege Escalation
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10845 HIGH
cPanel 11.48.0.5-11.48.5.2 - Arbitrary File Overwrite via check_system_storable Script
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10844 MEDIUM
cPanel 11.48.0.5-11.48.5.2 - Exposure of Sensitive Information via chcpass Script
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10843 HIGH
cPanel 11.48.0.5-11.48.5.2 - Remote Code Execution via JSON-API
Aug 01, 2019
CVSS 8.1
EPSS 0.01
CVE-2016-10842 MEDIUM
cPanel 11.48.0.5-11.48.5.2 - Unauthenticated Arbitrary File Read via setup_global_spam_filter.pl
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10841 MEDIUM
cPanel <11.54.0.4 - Info Disclosure
Aug 01, 2019
CVSS 5.3
EPSS 0.00
CVE-2016-10840 HIGH
cPanel 11.48.0.5-11.48.5.2 - Remote Code Execution via Locale Duplication
Aug 01, 2019
CVSS 8.8
EPSS 0.01
CVE-2016-10839 HIGH
cPanel 11.48.0.5-11.48.5.2 - SQL Injection via bin/horde_update_usernames
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10838 MEDIUM
cPanel 11.48.0.5-11.48.5.2 - Arbitrary File Read via bin/fmq Script
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10837 HIGH
cPanel 11.48.0.5-11.48.5.2 - Remote Code Execution via Unsafe @INC Path
Aug 01, 2019
CVSS 7.5
EPSS 0.01
CVE-2016-10836 MEDIUM
cPanel 11.50.0.4-11.50.5.2 - Unauthenticated Arbitrary File Read via CalDAV Authentication
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10860 HIGH
cPanel 11.48.0.5-11.48.4.8 - Unauthenticated Zone Modification via WHM API
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10859 HIGH
cPanel 11.48.0.5-11.48.4.8 - Unauthenticated Password Change via Webmail API
Aug 01, 2019
CVSS 8.1
EPSS 0.00
CVE-2016-10858 CRITICAL
cPanel 11.48.0.5-11.48.4.8 - Unauthenticated Remote Code Execution via DNS NS Entry Poisoning
Aug 01, 2019
CVSS 9.8
EPSS 0.01
CVE-2016-10857 MEDIUM
cPanel 11.48.0.5-11.48.4.8 - Improper Access Control
Aug 01, 2019
CVSS 6.5
EPSS 0.00
CVE-2016-10856 MEDIUM
cPanel 11.48.0.5-11.48.4.8 - Sensitive Data Exposure via Comet Feeds
Aug 01, 2019
CVSS 6.5
EPSS 0.00