| OSVDB ID | Disclosure Date | Title |
|
44847
Description:
(Description Provided by CVE) : Multiple cross-site request forgery (CSRF) vulnerabilities in cPanel, possibly 11.18.3 and 11.19.3, allow remote attackers to (1) execute arbitrary code via the command1 parameter to frontend/x2/cron/editcronsimple.html, and perform various administrative actions via (2) frontend/x2/sql/adddb.html, (3) frontend/x2/sql/adduser.html, and (4) frontend/x2/ftp/doaddftp.html.
|
2008-04-17
|
cPanel frontend/x2/sql/adduser.html command1 Parameter CSRF
|
|
61231
Description:
cPanel contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'fileop' parameter upon submission to the 'frontend/x3/files/fileop.html' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2009-12-17
|
cPanel frontend/x3/files/fileop.html fileop Parameter XSS
|
|
88749
Description:
cPanel contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'account' parameter upon submission to the frontend/x3/mail/manage.html script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-24
|
cPanel frontend/x3/mail/manage.html account Parameter XSS
|
|
55515
Description:
(Description Provided by CVE) : Directory traversal vulnerability in frontend/x3/stats/lastvisit.html in cPanel allows remote attackers to read arbitrary files via a .. (dot dot) in the domain parameter.
|
2009-06-29
|
cPanel frontend/x3/stats/lastvisit.html domain Parameter Traversal Arbitrary File Access
|
|
10961
Description:
(Description Provided by CVE) : cPanel 9.4.1-RELEASE-64 follows hard links, which allows local users to (1) read arbitrary files via the backup feature or (2) chown arbitrary files via the .htaccess file when Front Page extensions are enabled or disabled.
|
2004-10-18
|
cPanel Frontpage .htaccess Hardlink Arbitrary File Owernship Modification
|
|
10962
Description:
(Description Provided by CVE) : cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private directory, which is created when Front Page extensions are enabled.
|
2004-10-18
|
cPanel Frontpage _private Symlink Arbitrary File Permission Modification
|
|
4220
Description:
cPanel contains a flaw that allows a remote attacker to execute arbitrary commands. The issue is due to the "guestbook.cgi" script not properly sanitizing input to the "template" variable. By providing a specially crafted argument to this variable, an attacker can execute arbitrary commands.
|
2003-02-19
|
cPanel guestbook.cgi template Variable Arbitrary Command Execution
|
|
22940
Description:
cPanel contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the file extension or MIME type upon submission to the handle.html script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-02-04
|
cPanel handle.html Multiple Field XSS
|
|
4244
Description:
cPanel contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "dir" variable upon submission to the "htaccess/index.html" script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2004-03-13
|
cPanel htaccess/index.html dir Parameter XSS
|
|
4211
Description:
cPanel contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "account" variable upon submission to the "ignorelist.html" script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2004-03-13
|
cPanel ignorelist.html account Parameter XSS
|
|
6712
Description:
CPanel contains a flaw that may allow a malicious user to delete arbitrary customer DNS records. The issue is triggered when a remote authenticated attacker invokes the script "/scripts/killacct" to delete the DNS information of other accounts, which belong to other administrators. By setting a crafted cookie, a remote attacker can delete any DNS records, resulting in a loss of availability.
|
2004-06-07
|
cPanel killacct Script Arbitrary DNS Deletion
|
|
53264
Description:
Unknown / Incomplete
|
2009-03-17
|
cPanel Legacy File Manager Filename XSS
|
|
68373
Description:
Unknown / Incomplete
|
2010-09-01
|
cPanel Local safe_mode Bypass
|
|
4218
Description:
cPanel contains a flaw that allows a remote attacker to execute arbitrary commands. The issue is due to the "login" feature not properly sanitizing the "user" variable. If an attacker supplies a specially crafted username, arbitrary commands will be executed with the privileges of the cPanel software.
|
2004-03-12
|
cPanel Login Page user Parameter Arbitrary Command Execution
|
|
61954
Description:
cPanel contains a flaw that allows HTTP response splitting. This flaw exists because the application does not validate the 'failurl' parameter upon submission to the 'login/index.php' script. This could allow a context-dependent attacker to insert arbitrary HTTP headers, which are included in a response sent to the user.
|
2010-01-21
|
cPanel login/index.php failurl Parameter HTTP Response Splitting
|
|
33233
Description:
Unknown / Incomplete
|
2006-12-01
|
cPanel mail/pops.html domain Parameter XSS
|
|
6418
Description:
cPan contains a flaw that may allow a remote attacker to execute arbitrary code. The problem is that cPanel compiles Apache and PHP with the mod_phpsuexec option. It is possible that the flaw may allow arbitrary code execution with the privileges of any other user which owns a web accessible php file, resulting in a loss of integrity.
|
2004-05-23
|
cPanel mod_phpsuexec Arbitrary Code Execution
|
|
52253
Description:
Unknown / Incomplete
|
2008-08-09
|
cPanel Module Installation Function CSRF
|
|
29072
Description:
Unknown / Incomplete
|
2006-07-26
|
cPanel Multiple Password User Authentication Weakness
|
|
88125
Description:
cPanel contains multiple unspecified issues. No further details have been provided.
|
2012-12-04
|
cPanel Multiple Unspecified Issues
|
|
29122
Description:
(Description Provided by CVE) : Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to gain privileges via unspecified vectors in (1) mysqladmin and (2) hooksadmin.
|
2006-09-25
|
cPanel mysqladmin/hooksadmin Unspecified Privilege Escalation
|
|
30387
Description:
CPanel contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'user' and 'dir' variables upon submission to the 'newuser.html' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-11-12
|
cPanel newuser.html Multiple Parameter XSS
|
|
22972
Description:
Unknown / Incomplete
|
2006-02-08
|
cPanel Null Login Administrator Username Disclosure
|
|
7006
Description:
cPanel contains a flaw that may allow a malicious user to overwrite database entries, including password information. The issue is triggered when the user passes special characters within the "password", "domain" and "user" variables to the password change script. It is possible that the flaw may allow privilege escalation resulting in a loss of integrity.
|
2004-06-09
|
cPanel passwd Script Unauthorized Database Password Change
|
|
52252
Description:
Unknown / Incomplete
|
2008-08-09
|
cPanel Password Change Function CSRF
|
|
31835
Description:
(Description Provided by CVE) : cPanel does not automatically synchronize the PHP open_basedir configuration directive between the main server and virtual hosts that share physical directories, which might allow a local user to bypass open_basedir restrictions and access other virtual hosts via a PHP script that uses a main server URL (such as ~username) that is blocked by the user's own open_basedir directive, but not the main server's open_basedir directive.
|
2007-01-11
|
cPanel PHP OpenBaseDir Configuration Local Access Restriction Bypass
|
|
4213
Description:
cPanel contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "db" variable upon submission to the "repairdb.html" script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2004-03-13
|
cPanel repairdb.html db Parameter XSS
|
|
4205
Description:
cPanel contains a flaw that allows a remote attacker to execute arbitrary commands. The issue is due to the "resetpass" feature not properly sanitizing the "user" variable. If an attacker supplies a specially crafted username, arbitrary commands will be executed with the privileges of the cPanel software.
|
2004-03-11
|
cPanel resetpass Arbitrary Command Execution
|
|
45816
Description:
(Description Provided by CVE) : ** DISPUTED ** scripts/wwwacct in cPanel 11.18.6 STABLE and earlier and 11.23.1 CURRENT and earlier allows remote authenticated users with reseller privileges to execute arbitrary code via shell metacharacters in the Email address field (aka Email text box). NOTE: the vendor disputes this, stating "I'm unable to reproduce such an issue on multiple servers running different versions of cPanel."
|
2008-05-18
|
cPanel scripts/wwwacct Email Address Field Arbitrary Shell Command Execution
|
|
52251
Description:
cPanel contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the query string upon submission to the scripts2/confdkillproc script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-08-09
|
cPanel scripts2/confdkillproc Query String XSS
|