Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cpanel vulnerabilities and exploits
(subscribe to this query)
6.3
CVSSv3
CVE-2017-18403
cPanel prior to 68.0.15 allows code execution in the context of the nobody account via Mailman archives (SEC-337).
Cpanel Cpanel
3.1
CVSSv3
CVE-2017-18404
cPanel prior to 68.0.15 allows domain data to be deleted for domains with the .lock TLD (SEC-341).
Cpanel Cpanel
5.5
CVSSv3
CVE-2017-18405
cPanel prior to 68.0.15 allows arbitrary file-read operations because of the backup .htaccess modification logic (SEC-345).
Cpanel Cpanel
7.5
CVSSv3
CVE-2017-18406
cPanel prior to 67.9999.103 allows SQL injection during eximstats processing (SEC-276).
Cpanel Cpanel
4.8
CVSSv3
CVE-2017-18407
cPanel prior to 67.9999.103 does not enforce SSL hostname verification for the support-agreement download (SEC-279).
Cpanel Cpanel
5.4
CVSSv3
CVE-2017-18408
cPanel prior to 67.9999.103 allows stored XSS in WHM MySQL Password Change interfaces (SEC-282).
Cpanel Cpanel
6.5
CVSSv3
CVE-2017-18409
In cPanel prior to 67.9999.103, the backup interface could return a backup archive with all MySQL databases (SEC-283).
Cpanel Cpanel
6.5
CVSSv3
CVE-2017-18410
In cPanel prior to 67.9999.103, a user account's backup archive could contain all MySQL databases on the server (SEC-284).
Cpanel Cpanel
6.8
CVSSv3
CVE-2017-18411
The "addon domain conversion" feature in cPanel prior to 67.9999.103 can copy all MySQL databases to the new account (SEC-285).
Cpanel Cpanel
2.5
CVSSv3
CVE-2017-18412
cPanel prior to 67.9999.103 allows Apache HTTP Server log files to become world-readable because of mishandling on an account rename (SEC-296).
Cpanel Cpanel
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-40673
CVE-2024-36674
CVE-2024-27348
unspecified
CVE-2024-24919
CVE-2024-4870
malicious code
CVE-2024-2019
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »