Cpanel

Cpanel

419 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.53%
  • Veröffentlicht 02.08.2019 14:15:12
  • Zuletzt bearbeitet 21.11.2024 03:20:01

cPanel before 68.0.15 allows stored XSS during a cpaddons moderated upgrade (SEC-336).

  • EPSS 0.7%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 allows use of an unreserved e-mail address in DNS zone SOA records (SEC-306).

  • EPSS 0.38%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 writes home-directory backups to an incorrect location (SEC-309).

  • EPSS 0.32%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 allows jailed accounts to restore files that are outside of the jail (SEC-310).

  • EPSS 0.34%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 allows unprivileged users to access restricted directories during account restores (SEC-311).

  • EPSS 1.98%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 allows arbitrary code execution via Maketext injection in PostgresAdmin (SEC-313).

  • EPSS 1.98%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 allows arbitrary code execution via Maketext injection in a Reseller style upload (SEC-314).

  • EPSS 0.41%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:19:59

cPanel before 68.0.15 can perform unsafe file operations because Jailshell does not set the umask (SEC-315).

  • EPSS 0.71%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:20:00

cPanel before 68.0.15 allows string format injection in dovecot-xaps-plugin (SEC-318).

  • EPSS 0.47%
  • Veröffentlicht 02.08.2019 13:15:11
  • Zuletzt bearbeitet 21.11.2024 03:20:00

cPanel before 68.0.15 allows code execution in the context of the root account because of weak permissions on incremental backups (SEC-322).