CVE-2016-10849
- EPSS 0.94%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 02:44:54
cPanel before 11.54.0.4 allows certain file-chmod operations in scripts/secureit (SEC-82).
CVE-2018-20924
- EPSS 0.83%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows arbitrary file-read and file-unlink operations via WHM style uploads (SEC-378).
CVE-2018-20925
- EPSS 0.31%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows local privilege escalation via the WHM Legacy Language File Upload interface (SEC-379).
CVE-2018-20926
- EPSS 0.39%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows local privilege escalation via the WHM Locale XML Upload interface (SEC-380).
CVE-2018-20927
- EPSS 0.32%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows jailshell escape because of incorrect crontab parsing (SEC-382).
CVE-2018-20928
- EPSS 0.65%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows stored XSS via the cpaddons vendor interface (SEC-391).
CVE-2018-20929
- EPSS 0.65%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows an open redirect via the /unprotected/redirect.html endpoint (SEC-392).
CVE-2018-20930
- EPSS 0.72%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows .htaccess restrictions bypass when Htaccess Optimization is enabled (SEC-401).
CVE-2018-20931
- EPSS 0.98%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:29
cPanel before 70.0.23 allows demo accounts to execute code via the Landing Page (SEC-405).
- EPSS 0.7%
- Veröffentlicht 01.08.2019 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:02:30
cPanel before 70.0.23 exposes Apache HTTP Server logs after creation of certain domains (SEC-406).