Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cpanel vulnerabilities and exploits
(subscribe to this query)
2
CVSSv3
CVE-2017-18392
cPanel prior to 68.0.15 allows collisions because PostgreSQL databases can be assigned to multiple accounts (SEC-325).
Cpanel Cpanel
3.1
CVSSv3
CVE-2017-18404
cPanel prior to 68.0.15 allows domain data to be deleted for domains with the .lock TLD (SEC-341).
Cpanel Cpanel
7.5
CVSSv3
CVE-2017-18406
cPanel prior to 67.9999.103 allows SQL injection during eximstats processing (SEC-276).
Cpanel Cpanel
7.8
CVSSv3
CVE-2017-18413
In cPanel prior to 67.9999.103, the backup system overwrites root's home directory when a mount disappears (SEC-299).
Cpanel Cpanel
7.8
CVSSv3
CVE-2017-18415
cPanel prior to 67.9999.103 allows code execution in the context of the mailman account because of incorrect environment-variable filtering (SEC-302).
Cpanel Cpanel
5.4
CVSSv3
CVE-2017-18417
cPanel prior to 66.0.2 allows stored XSS during WHM cPAddons installation (SEC-263).
Cpanel Cpanel
5.4
CVSSv3
CVE-2017-18419
cPanel prior to 66.0.2 allows stored XSS during WHM cPAddons uninstallation (SEC-266).
Cpanel Cpanel
3.3
CVSSv3
CVE-2017-18421
cPanel prior to 66.0.2 allows demo accounts to create databases and users (SEC-271).
Cpanel Cpanel
3.3
CVSSv3
CVE-2017-18424
In cPanel prior to 66.0.2, the Apache HTTP Server configuration file is changed to world-readable when rebuilt (SEC-274).
Cpanel Cpanel
7.8
CVSSv3
CVE-2017-18434
cPanel prior to 64.0.21 allows code execution in the context of the root account via a SET_VHOST_LANG_PACKAGE multilang adminbin call (SEC-237).
Cpanel Cpanel
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »