Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 6.5

    MEDIUM
    CVE-2016-10819

    In cPanel before 57.9999.54, user log files become world-readable when rotated by cpanellogd (SEC-125).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.33
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2016-10818

    cPanel before 57.9999.54 incorrectly sets log-file permissions in dnsadmin-startup and spamd-startup (SEC-124).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.25
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2016-10817

    cPanel before 57.9999.54 allows SQL Injection via the ModSecurity TailWatch log file (SEC-123).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.39
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2016-10816

    cPanel before 57.9999.54 allows Webmail accounts to execute arbitrary code through forwarders (SEC-121).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.98
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2016-10815

    cPanel before 57.9999.54 allows arbitrary file-read operations for Webmail accounts via Branding APIs (SEC-120).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.33
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2016-10814

    cPanel before 57.9999.54 allows demo-mode escape via show_template.stor (SEC-119).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.51
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 5.4

    MEDIUM
    CVE-2016-10813

    cPanel before 57.9999.54 allows self XSS during ftp account creation under addon domains (SEC-118).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.26
    • Published: Aug. 01, 2019
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2016-10812

    In cPanel before 57.9999.54, /scripts/enablefileprotect exposed TTYs (SEC-117).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.51
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2016-10811

    In cPanel before 57.9999.54, /scripts/unsuspendacct exposed TTYs (SEC-116).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.44
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2016-10810

    In cPanel before 57.9999.54, /scripts/maildir_converter exposed a TTY to an unprivileged process (SEC-115).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.44
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2016-10809

    In cPanel before 57.9999.54, /scripts/checkinfopages exposed a TTY to an unprivileged process (SEC-114).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.44
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2016-10808

    In cPanel before 57.9999.54, /scripts/addpop and /scripts/delpop exposed TTYs (SEC-113).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.51
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2016-10807

    cPanel before 57.9999.54 allows certain denial-of-service outcomes via /scripts/killpvhost (SEC-112).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.32
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 5.4

    MEDIUM
    CVE-2016-10806

    cPanel before 57.9999.54 allows self XSS on the Paper Lantern Landing Page (SEC-110).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.30
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2016-10805

    cPanel before 57.9999.54 allows demo accounts to execute arbitrary code via ajax_maketext_syntax_util.pl (SEC-109).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.91
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 8.7

    HIGH
    CVE-2016-10804

    The SQLite journal feature in cPanel before 57.9999.54 allows arbitrary file-overwrite operations during Horde Restore (SEC-58).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.27
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2016-10803

    cPanel before 57.9999.105 allows newline injection via LOC records (CPANEL-6923).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.36
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2016-10802

    cPanel before 58.0.4 allows code execution in the context of other user accounts through the PHP CGI handler (SEC-142).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.56
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2016-10801

    cPanel before 58.0.4 has improper session handling for shared users (SEC-139).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.66
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2016-10800

    cPanel before 58.0.4 allows demo-mode escape via Site Templates and Boxtrapper API calls (SEC-138).... Read more

    Affected Products : cpanel
    • EPSS Score: %0.26
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
Showing 20 of 291887 Results