Перейти к содержимому
Noroxi

Записи cpanel

431 опубликованных записей вендора cpanel.

Профиль для исследователя

Попали в KEV
1 · 0,2 %
С эксплойтом
1 · 0,2 %
Pre-auth RCE
13
С записью об исправлении
1,6 %
Медиана: публикация → KEV
1 дн.

Все записи

431 записей
  • CVE-2026-41940
    97Срочно

    WebPros cPanel and WHM Authentication Bypass via Login Flow

    КритическаяCVSS 9,3KEVГотовый эксплойтEPSS 99 %

    cpanel · cpanel29 апр. 2026 г.

  • CVE-2004-1769
    50В плане

    The "Allow cPanel users to reset their password via email" feature in cPanel 9.1.0 build 34 and earlier, including 8.x, allows remote attack

    КритическаяCVSS 10,0Proof of conceptEPSS 35 %

    cpanel · cpanel11 мар. 2004 г.

  • CVE-2023-29489
    44В плане

    An issue was discovered in cPanel before 11.109.9999.116.

    СредняяCVSS 6,1Proof of conceptEPSS 66 %

    cpanel · cpanel27 апр. 2023 г.

  • CVE-2003-1425
    43В плане

    guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.

    КритическаяCVSS 10,0Proof of conceptEPSS 11 %

    cpanel · cpanel31 дек. 2003 г.

  • CVE-2004-1770
    43В плане

    The login page for cPanel 9.1.0, and possibly other versions, allows remote attackers to execute arbitrary code via shell metacharacters in

    КритическаяCVSS 10,0Proof of conceptEPSS 10 %

    cpanel · cpanel11 мар. 2004 г.

  • CVE-2020-26098
    40В плане

    cPanel before 88.0.3 mishandles the Exim filter path, leading to remote code execution (SEC-485).

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cpanel · cpanel25 сент. 2020 г.

  • CVE-2016-10855
    40В плане

    cPanel before 11.54.0.4 allows unauthenticated arbitrary code execution via cpsrvd (SEC-91).

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2016-10858
    40В плане

    cPanel before 11.54.0.0 allows unauthenticated arbitrary code execution via DNS NS entry poisoning (SEC-64).

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2016-10824
    40В плане

    cPanel before 55.9999.141 allows unauthenticated arbitrary code execution via DNS NS entry poisoning (SEC-90).

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2020-26108
    40В плане

    cPanel before 88.0.13 mishandles file-extension dispatching, leading to code execution (SEC-488).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel25 сент. 2020 г.

  • CVE-2018-20863
    40В плане

    cPanel before 76.0.8 allows remote attackers to execute arbitrary code via mailing-list attachments (SEC-452).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel30 июл. 2019 г.

  • CVE-2020-10119
    40В плане

    cPanel before 84.0.20 allows a demo account to achieve remote code execution via a cpsrvd rsync shell (SEC-544).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel17 мар. 2020 г.

  • CVE-2020-10121
    40В плане

    cPanel before 84.0.20 allows a demo account to achieve code execution via PassengerApps APIs (SEC-546).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel17 мар. 2020 г.

  • CVE-2016-10817
    39Наблюдать

    cPanel before 57.9999.54 allows SQL Injection via the ModSecurity TailWatch log file (SEC-123).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2020-26100
    39Наблюдать

    chsh in cPanel before 88.0.3 allows a Jailshell escape (SEC-497).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel25 сент. 2020 г.

  • CVE-2019-20498
    39Наблюдать

    cPanel before 82.0.18 allows WebDAV authentication bypass because the connection-sharing logic is incorrect (SEC-534).

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    cpanel · cpanel17 мар. 2020 г.

  • CVE-2020-26101
    39Наблюдать

    In cPanel before 88.0.3, insecure RNDC credentials are used for BIND on a templated VM (SEC-549).

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    cpanel · cpanel25 сент. 2020 г.

  • CVE-2020-26105
    39Наблюдать

    In cPanel before 88.0.3, insecure chkservd test credentials are used on a templated VM (SEC-554).

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    cpanel · cpanel25 сент. 2020 г.

  • CVE-2018-20887
    39Наблюдать

    cPanel before 74.0.0 allows SQL injection during database backups (SEC-420).

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2004-1875
    38Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0-R85 allow remote attackers to inject arbitrary web script or HTML via th

    КритическаяCVSS 9,3Proof of conceptEPSS 5 %

    cpanel · cpanel30 мар. 2004 г.

  • CVE-2006-5014
    36Наблюдать

    Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to gain privileges via unspecified vectors in (1

    ВысокаяCVSS 8,8Proof of conceptEPSS 4 %

    cpanel · cpanel26 сент. 2006 г.

  • CVE-2016-10828
    36Наблюдать

    cPanel before 55.9999.141 allows arbitrary code execution because of an unsafe @INC path (SEC-97).

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2016-10823
    36Наблюдать

    cPanel before 55.9999.141 allows arbitrary code execution in the context of the root account because of MakeText interpolation (SEC-89).

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2016-10850
    36Наблюдать

    cPanel before 11.54.0.4 allows arbitrary code execution via scripts/synccpaddonswithsqlhost (SEC-83).

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    cpanel · cpanel1 авг. 2019 г.

  • CVE-2016-10840
    36Наблюдать

    cPanel before 11.54.0.4 allows arbitrary code execution during locale duplication (SEC-72).

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    cpanel · cpanel1 авг. 2019 г.