Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Cpanel
(Cpanel)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 415 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2019-08-07 | CVE-2016-10811 | In cPanel before 57.9999.54, /scripts/unsuspendacct exposed TTYs (SEC-116). | Cpanel | 8.8 | ||
2019-08-07 | CVE-2016-10810 | In cPanel before 57.9999.54, /scripts/maildir_converter exposed a TTY to an unprivileged process (SEC-115). | Cpanel | 8.8 | ||
2019-08-07 | CVE-2016-10809 | In cPanel before 57.9999.54, /scripts/checkinfopages exposed a TTY to an unprivileged process (SEC-114). | Cpanel | 8.8 | ||
2019-08-07 | CVE-2016-10807 | cPanel before 57.9999.54 allows certain denial-of-service outcomes via /scripts/killpvhost (SEC-112). | Cpanel | 6.5 | ||
2019-08-07 | CVE-2016-10805 | cPanel before 57.9999.54 allows demo accounts to execute arbitrary code via ajax_maketext_syntax_util.pl (SEC-109). | Cpanel | 8.8 | ||
2019-08-07 | CVE-2016-10804 | The SQLite journal feature in cPanel before 57.9999.54 allows arbitrary file-overwrite operations during Horde Restore (SEC-58). | Cpanel | 8.1 | ||
2019-08-07 | CVE-2016-10802 | cPanel before 58.0.4 allows code execution in the context of other user accounts through the PHP CGI handler (SEC-142). | Cpanel | 8.8 | ||
2019-08-06 | CVE-2016-10789 | cPanel before 60.0.25 allows code execution via the cpsrvd 403 error response handler (SEC-191). | Cpanel | 8.8 | ||
2019-08-06 | CVE-2016-10788 | cPanel before 60.0.25 allows arbitrary code execution via Maketext in PostgreSQL adminbin (SEC-188). | Cpanel | 8.8 | ||
2019-08-06 | CVE-2016-10787 | The Host Access Control feature in cPanel before 60.0.25 mishandles actionless host.deny entries (SEC-187). | Cpanel | 8.1 |