Filters

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelXSS

First published (updated )

Cpanel CpanelcPanel before 62.0.4 does not enforce account ownership for has_mycnf_for_cpuser WHM API calls (SEC-…

First published (updated )

Cpanel CpanelIn cPanel before 62.0.4, WHM SSL certificate generation uses an unreserved e-mail address (SEC-209).

First published (updated )

Cpanel CpanelInfoleak

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelIn cPanel before 62.0.4, Exim transports could execute in the context of the nobody account (SEC-206…

First published (updated )

Cpanel CpanelLeech Protect in cPanel before 62.0.4 does not protect certain directories (SEC-205).

7.5
First published (updated )

Cpanel CpanelInput Validation

8.8
First published (updated )

Cpanel CpanelInfoleak

First published (updated )

Cpanel CpanelXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelXSS

First published (updated )

Cpanel CpanelXSS

First published (updated )

Cpanel CpanelcPanel before 62.0.4 has a fixed password for the Munin MySQL test account (SEC-196).

8.8
First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelCode Injection

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelcPanel before 62.0.17 allows access to restricted resources because of a URL filtering error (SEC-22…

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelcPanel before 62.0.17 allows a CPHulk one-day ban bypass when IP based protection is enabled (SEC-22…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelInput Validation

7.8
First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelInput Validation

7.8
First published (updated )

Cpanel CpanelInput Validation

7.8
First published (updated )

Cpanel CpanelInput Validation

3.6
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelcPanel before 62.0.17 allows arbitrary file-read operations via WHM /styled/ URLs (SEC-218).

First published (updated )

Cpanel CpanelXSS

First published (updated )

Cpanel CpanelIn cPanel before 62.0.17, addon domain conversion did not require a package for resellers (SEC-208).

First published (updated )

Cpanel CpanelXSS

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelSQL Injection

First published (updated )

Cpanel CpanelInput Validation, SQL Injection

First published (updated )

Cpanel CpanelPath Traversal

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelcPanel before 64.0.21 allows file-read and file-write operations for demo accounts via the SourceIPC…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelcPanel before 64.0.21 does not enforce demo restrictions for SSL API calls (SEC-249).

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelCommand Injection

First published (updated )

Cpanel CpanelcPanel before 64.0.21 allows demo accounts to redirect web traffic (SEC-245).

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelXEE

First published (updated )

Cpanel CpanelcPanel before 64.0.21 allows a Webmail account to execute code via forwarders (SEC-240).

First published (updated )

Cpanel CpanelInfoleak

3.5
First published (updated )

Cpanel CpanelMalicious File Upload

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Cpanel CpanelInput Validation

7.8
First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelInfoleak, SQL Injection

7.8
First published (updated )

Cpanel CpanelInput Validation

First published (updated )

Cpanel CpanelIn cPanel before 66.0.2, Apache HTTP Server SSL domain logs can persist on disk after an account ter…

3.3
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203