CVE-2016-10821: Medium severity Cpanel Cpanel vulnerability
Published Aug 1, 2019
·Updated
In cPanel before 55.9999.141, Scripts/addpop reveals a command-line password in a process list (SEC-75).
Affected Software
3 affected components
Cpanel Cpanel>=11.50.0.4<11.50.5.2
Cpanel Cpanel>=11.52.0.5<11.52.4.1
Cpanel Cpanel>=11.54.0.0<11.54.0.20
Event History
Aug 1, 2019
CVE Published
via MITRE·06:29 PM
Data Sourced
via MITRE·06:29 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10821?
CVE-2016-10821 is considered a moderate severity vulnerability that exposes command-line passwords in process lists.
2
How do I fix CVE-2016-10821?
To fix CVE-2016-10821, upgrade cPanel to version 55.9999.141 or later.
3
What versions of cPanel are affected by CVE-2016-10821?
CVE-2016-10821 affects cPanel versions prior to 55.9999.141.
4
What is the impact of CVE-2016-10821?
The impact of CVE-2016-10821 is the potential exposure of sensitive command-line passwords to unauthorized users.
5
Is CVE-2016-10821 specific to a certain cPanel version range?
Yes, CVE-2016-10821 affects cPanel versions between 11.50.0.4 and 11.54.0.20.