CVE-2016-10817: SQL Injection
Published Aug 1, 2019
·Updated
cPanel before 57.9999.54 allows SQL Injection via the ModSecurity TailWatch log file (SEC-123).
Affected Software
4 affected components
Cpanel Cpanel>=11.50.0.4<11.50.6.2
Cpanel Cpanel>=11.52.6.0<11.52.6.1
Cpanel Cpanel>=11.54.0.0<11.54.0.24
Cpanel Cpanel>=56.0.1<56.0.15
Event History
Aug 1, 2019
CVE Published
via MITRE·06:51 PM
Data Sourced
via MITRE·06:51 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10817?
CVE-2016-10817 has a medium severity rating due to its potential for SQL injection attacks.
2
How do I fix CVE-2016-10817?
To fix CVE-2016-10817, upgrade cPanel to version 57.9999.54 or later.
3
What versions of cPanel are affected by CVE-2016-10817?
CVE-2016-10817 affects cPanel versions prior to 57.9999.54.
4
What types of attacks can CVE-2016-10817 facilitate?
CVE-2016-10817 can facilitate SQL injection attacks through the ModSecurity TailWatch log file.
5
Is there a known exploit for CVE-2016-10817?
While specific exploits may not be publicly documented, the nature of SQL injection indicates potential exploitability.