CVE-2016-10857: Medium severity Cpanel Cpanel vulnerability
Published Aug 1, 2019
·Updated
cPanel before 11.54.0.0 allows a bypass of the e-mail sending limit (SEC-60).
Affected Software
4 affected components
Cpanel Cpanel>=11.48.0.5<11.48.4.8
Cpanel Cpanel>=11.50.0.4<11.50.3.1
Cpanel Cpanel>=11.51.9999.98<11.52.0.23
Cpanel Cpanel>=11.52.1.0<11.52.1.1
Event History
Aug 1, 2019
CVE Published
via MITRE·02:40 PM
Data Sourced
via MITRE·02:40 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10857?
CVE-2016-10857 has a critical severity level due to its potential for bypassing email sending limits.
2
How do I fix CVE-2016-10857?
To fix CVE-2016-10857, update cPanel to version 11.54.0.0 or later.
3
What versions of cPanel are affected by CVE-2016-10857?
CVE-2016-10857 affects cPanel versions prior to 11.54.0.0, specifically versions 11.48.x, 11.50.x, 11.51.x, and 11.52.x.
4
What kind of attack does CVE-2016-10857 enable?
CVE-2016-10857 enables attackers to bypass the email sending limit, potentially leading to email abuse.
5
Is there a workaround for CVE-2016-10857?
There is no documented workaround for CVE-2016-10857; updating to the latest version is required for mitigation.