Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cpanel cpanel vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2016-10794
cPanel prior to 59.9999.145 allows arbitrary file-read operations because of a multipart form processing error (SEC-154).
Cpanel Cpanel
6.1
CVSSv3
CVE-2016-10795
cPanel prior to 59.9999.145 allows stored XSS in the WHM tail_upcp2.cgi interface (SEC-156).
Cpanel Cpanel
3.3
CVSSv3
CVE-2016-10796
cPanel prior to 58.0.4 initially uses weak permissions for Apache HTTP Server log files (SEC-130).
Cpanel Cpanel
4.3
CVSSv3
CVE-2016-10797
cPanel prior to 58.0.4 allows WHM "Purchase and Install an SSL Certificate" page visitors to list all server domains (SEC-133).
Cpanel Cpanel
6.8
CVSSv3
CVE-2016-10798
cPanel prior to 58.0.4 allows a file-ownership change (to nobody) via rearrangeacct (SEC-134).
Cpanel Cpanel
5.5
CVSSv3
CVE-2016-10799
cPanel prior to 58.0.4 does not set the Pear tmp directory during a PHP installation (SEC-137).
Cpanel Cpanel
7.8
CVSSv3
CVE-2016-10800
cPanel prior to 58.0.4 allows demo-mode escape via Site Templates and Boxtrapper API calls (SEC-138).
Cpanel Cpanel
8.8
CVSSv3
CVE-2016-10801
cPanel prior to 58.0.4 has improper session handling for shared users (SEC-139).
Cpanel Cpanel
8.8
CVSSv3
CVE-2016-10802
cPanel prior to 58.0.4 allows code execution in the context of other user accounts through the PHP CGI handler (SEC-142).
Cpanel Cpanel
7.5
CVSSv3
CVE-2016-10803
cPanel prior to 57.9999.105 allows newline injection via LOC records (CPANEL-6923).
Cpanel Cpanel
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »