VYPR

Cpanel

by CPanel

CVEs (426)

  • CVE-2018-20950MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 68.0.27 allows self stored XSS in WHM Account Transfer (SEC-386).

  • CVE-2018-20949MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 68.0.27 allows self XSS in WHM Apache Configuration Include Editor (SEC-385).

  • CVE-2018-20948MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 68.0.27 allows self XSS in cPanel Backup Restoration (SEC-383).

  • CVE-2018-20929MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows an open redirect via the /unprotected/redirect.html endpoint (SEC-392).

  • CVE-2018-20928MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS via the cpaddons vendor interface (SEC-391).

  • CVE-2018-20923MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS via a WHM Synchronize DNS Records action (SEC-377).

  • CVE-2018-20922MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS via a WHM DNS Cleanup action (SEC-376).

  • CVE-2018-20921MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS via a WHM "Delete a DNS Zone" action (SEC-375).

  • CVE-2018-20920MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS via a WHM Edit DNS Zone action (SEC-374).

  • CVE-2018-20919MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS via a WHM Create Account action (SEC-373).

  • CVE-2018-20918MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows stored XSS in WHM DNS Cluster (SEC-372).

  • CVE-2018-20910MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 70.0.23 allows self XSS in the WHM cPAddons showsecurity Interface (SEC-357).

  • CVE-2018-20903MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 71.9980.37 allows self XSS in the WHM Backup Configuration interface (SEC-421).

  • CVE-2018-20901MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 71.9980.37 allows Remote-Stored XSS in WHM Save Theme Interface (SEC-400).

  • CVE-2018-20900MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 71.9980.37 allows stored XSS in the YUM autorepair functionality (SEC-399).

  • CVE-2018-20899MedAug 1, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 71.9980.37 allows stored XSS in the WHM cPAddons installation interface (SEC-398).

  • CVE-2019-14406MedJul 30, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 78.0.18 has stored XSS in the BoxTrapper Queue Listing (SEC-493).

  • CVE-2018-20868MedJul 30, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 76.0.8 has Stored XSS in the WHM MultiPHP Manager interface (SEC-464).

  • CVE-2018-20866MedJul 30, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 76.0.8 has Stored XSS in the WHM "Reset a DNS Zone" feature (SEC-461).

  • CVE-2018-20865MedJul 30, 2019
    risk 0.40cvss 6.1epss 0.01

    cPanel before 76.0.8 has Self XSS in the WHM Additional Backup Destination field (SEC-459).

Page 11 of 22