VYPR

Vendor CVEs

CPanel

All CVEs

446 total · sorted by risk
  • CVE-2016-10850HigAug 1, 2019
    risk 0.57cvss 8.8epss 0.02

    cPanel before 11.54.0.4 allows arbitrary code execution via scripts/synccpaddonswithsqlhost (SEC-83).

  • CVE-2019-14405HigJul 30, 2019
    risk 0.57cvss 8.8epss 0.01

    cPanel before 78.0.18 allows demo accounts to execute code via securitypolicy.cg (SEC-487).

  • CVE-2019-14401HigJul 30, 2019
    risk 0.57cvss 8.8epss 0.01

    cPanel before 78.0.18 allows code execution via an addforward API1 call (SEC-480).

  • CVE-2019-14398HigJul 30, 2019
    risk 0.57cvss 8.8epss 0.01

    cPanel before 80.0.5 allows demo accounts to execute arbitrary code via ajax_maketext_syntax_util.pl (SEC-498).

  • CVE-2019-14392HigJul 30, 2019
    risk 0.57cvss 8.8epss 0.02

    cPanel before 80.0.22 allows remote code execution by a demo account because of incorrect URI dispatching (SEC-501).

  • CVE-2026-29205HigMay 13, 2026
    risk 0.56cvss 8.6epss 0.08

    Incorrect privileges management and insufficient path filtering allow to read arbitrary file on the server via the cpdavd attachment download endpoints.

  • CVE-2026-29201HigMay 8, 2026
    risk 0.56cvss 8.6epss 0.00

    Insufficient input validation of the feature file name in `feature::LOADFEATUREFILE` adminbin call can cause arbitrary file read when a relative file path is passed.

  • CVE-2026-32993HigMay 13, 2026
    risk 0.54cvss 8.3epss 0.00

    Improper sanitization of the `status` query parameter of the `/unprotected/nova_error` endpoint allows unauthenticated attacker to inject arbitrary HTTP header to the response.

  • CVE-2026-29206HigMay 13, 2026
    risk 0.53cvss 8.1epss 0.00

    Insufficient sanitization of SQL queries in the `sqloptimizer` utility script allows SQL Injections on behalf of the root user if Slow Query logging is enabled.

  • CVE-2026-32992HigMay 13, 2026
    risk 0.53cvss 8.2epss 0.00

    SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the request and capture credentials.

  • CVE-2021-38589HigAug 11, 2021
    risk 0.53cvss 8.1epss 0.01

    In cPanel before 96.0.13, scripts/fix-cpanel-perl does not properly restrict the overwriting of files (SEC-588).

  • CVE-2021-38588HigAug 11, 2021
    risk 0.53cvss 8.1epss 0.00

    In cPanel before 96.0.13, fix_cpanel_perl lacks verification of the integrity of downloads (SEC-587).

  • CVE-2020-12785HigMay 11, 2020
    risk 0.53cvss 8.1epss 0.01

    cPanel before 86.0.14 allows attackers to obtain access to the current working directory via the account backup feature (SEC-540).

  • CVE-2016-10804HigAug 7, 2019
    risk 0.53cvss 8.1epss 0.01

    The SQLite journal feature in cPanel before 57.9999.54 allows arbitrary file-overwrite operations during Horde Restore (SEC-58).

  • CVE-2016-10787HigAug 6, 2019
    risk 0.53cvss 8.1epss 0.01

    The Host Access Control feature in cPanel before 60.0.25 mishandles actionless host.deny entries (SEC-187).

  • CVE-2016-10771HigAug 5, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 60.0.25 allows file-create and file-chmod operations during ModSecurity Audit logfile processing (SEC-165).

  • CVE-2016-10830HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 55.9999.141 allows ACL bypass for AppConfig applications via magic_revision (SEC-100).

  • CVE-2016-10825HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 55.9999.141 allows attackers to bypass a Security Policy by faking static documents (SEC-92).

  • CVE-2016-10847HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.4 allows arbitrary file-read and file-write operations via scripts/fixmailboxpath (SEC-80).

  • CVE-2016-10846HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.4 allows arbitrary file-chown and file-chmod operations during Roundcube database conversions (SEC-79).

  • CVE-2016-10845HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.4 allows arbitrary file-overwrite operations in scripts/check_system_storable (SEC-78).

  • CVE-2016-10843HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.4 allows code execution in the context of shared users via JSON-API (SEC-76).

  • CVE-2016-10839HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.4 allows SQL injection in bin/horde_update_usernames (SEC-71).

  • CVE-2016-10860HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.0 allows unauthorized zone modification via the WHM API (SEC-66).

  • CVE-2016-10859HigAug 1, 2019
    risk 0.53cvss 8.1epss 0.01

    cPanel before 11.54.0.0 allows unauthorized password changes via Webmail API commands (SEC-65).

  • CVE-2016-10800HigAug 7, 2019
    risk 0.51cvss 7.8epss 0.01

    cPanel before 58.0.4 allows demo-mode escape via Site Templates and Boxtrapper API calls (SEC-138).

  • CVE-2017-18463HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 62.0.17 allows code execution in the context of the root account via a long DocumentRoot path (SEC-225).

  • CVE-2017-18460HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 62.0.17 allows arbitrary code execution during automatic SSL installation (SEC-221).

  • CVE-2017-18459HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 62.0.17 allows arbitrary code execution during account modification (SEC-220).

  • CVE-2017-18434HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 64.0.21 allows code execution in the context of the root account via a SET_VHOST_LANG_PACKAGE multilang adminbin call (SEC-237).

  • CVE-2017-18432HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    In cPanel before 64.0.21, Horde MySQL to SQLite conversion can leak a database password (SEC-234).

  • CVE-2017-18415HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 67.9999.103 allows code execution in the context of the mailman account because of incorrect environment-variable filtering (SEC-302).

  • CVE-2017-18413HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    In cPanel before 67.9999.103, the backup system overwrites root's home directory when a mount disappears (SEC-299).

  • CVE-2017-18400HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.01

    cPanel before 68.0.15 allows local root code execution via cpdavd (SEC-333).

  • CVE-2017-18390HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 68.0.15 allows code execution in the context of the root account because of weak permissions on incremental backups (SEC-322).

  • CVE-2017-18388HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 68.0.15 can perform unsafe file operations because Jailshell does not set the umask (SEC-315).

  • CVE-2017-18383HigAug 2, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 68.0.15 writes home-directory backups to an incorrect location (SEC-309).

  • CVE-2019-14400HigJul 30, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 78.0.18 allows local users to escalate to root access because of userdata cache misparsing (SEC-479).

  • CVE-2018-20869HigJul 30, 2019
    risk 0.51cvss 7.8epss 0.01

    cPanel before 76.0.8 allows arbitrary code execution in the context of the root account via dnssec adminbin (SEC-465).

  • CVE-2018-20862HigJul 30, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 76.0.8 unsafely performs PostgreSQL password changes (SEC-366).

  • CVE-2019-14389HigJul 30, 2019
    risk 0.51cvss 7.8epss 0.00

    cPanel before 82.0.2 allows local users to discover the MySQL root password (SEC-510).

  • CVE-2017-5613HigMar 3, 2017
    risk 0.51cvss 7.8epss 0.03

    Format string vulnerability in cgiemail and cgiecho allows remote attackers to execute arbitrary code via format string specifiers in a template file.

  • CVE-2021-38587HigAug 11, 2021
    risk 0.49cvss 7.5epss 0.01

    In cPanel before 96.0.13, scripts/fix-cpanel-perl mishandles the creation of temporary files (SEC-586).

  • CVE-2021-26267HigJan 26, 2021
    risk 0.49cvss 7.5epss 0.01

    cPanel before 92.0.9 allows a MySQL user (who has an old-style password hash) to bypass suspension (SEC-579).

  • CVE-2021-26266HigJan 26, 2021
    risk 0.49cvss 7.5epss 0.01

    cPanel before 92.0.9 allows a Reseller to bypass the suspension lock (SEC-578).

  • CVE-2020-26112HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    The email quota cache in cPanel before 90.0.10 allows overwriting of files.

  • CVE-2020-26109HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    cPanel before 88.0.13 allows bypass of a protection mechanism that attempted to restrict package modification (SEC-557).

  • CVE-2020-26107HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    cPanel before 88.0.3, upon an upgrade, establishes predictable PowerDNS API keys (SEC-561).

  • CVE-2020-26106HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    cPanel before 88.0.3 has weak permissions (world readable) for the proxy subdomains log file (SEC-558).

  • CVE-2020-26104HigSep 25, 2020
    risk 0.49cvss 7.5epss 0.01

    In cPanel before 88.0.3, an insecure SRS secret is used on a templated VM (SEC-552).

Page 2 of 9