CVE-2016-10816: Input Validation
Published Aug 1, 2019
·Updated
cPanel before 57.9999.54 allows Webmail accounts to execute arbitrary code through forwarders (SEC-121).
Affected Software
4 affected components
Cpanel Cpanel>=11.50.0.4<11.50.6.2
Cpanel Cpanel>=11.52.6.0<11.52.6.1
Cpanel Cpanel>=11.54.0.0<11.54.0.24
Cpanel Cpanel>=56.0.1<56.0.15
Event History
Aug 1, 2019
CVE Published
via MITRE·06:52 PM
Data Sourced
via MITRE·06:52 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10816?
CVE-2016-10816 has been assigned a moderate severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2016-10816?
To fix CVE-2016-10816, update cPanel to version 57.9999.54 or later.
3
What versions of cPanel are affected by CVE-2016-10816?
CVE-2016-10816 affects cPanel versions prior to 57.9999.54, including several 56.x, 11.52.x, 11.54.x, and 11.50.x versions.
4
What type of vulnerability is CVE-2016-10816?
CVE-2016-10816 is a code execution vulnerability that allows attackers to execute arbitrary code through compromised Webmail accounts.
5
Can CVE-2016-10816 affect my server security?
Yes, CVE-2016-10816 can compromise server security by allowing unauthorized code execution on affected cPanel installations.