• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2018-20889
2019-08-07
N/A
4.4 MEDIUM
cPanel before 74.0.0 allows certain file-read operations via password file caching (SEC-425).
CVE-2018-20888
2019-08-07
N/A
5.5 MEDIUM
cPanel before 74.0.0 allows file modification in the context of the root account because of incorrect HTTP authentication (SEC-424).
CVE-2018-20887
2019-08-01
N/A
9.8 CRITICAL
cPanel before 74.0.0 allows SQL injection during database backups (SEC-420).
CVE-2018-20886
2020-08-24
N/A
5.3 MEDIUM
cPanel before 74.0.0 insecurely stores phpMyAdmin session files (SEC-418).
CVE-2018-20885
2019-08-01
N/A
5.3 MEDIUM
cPanel before 74.0.0 allows Apache HTTP Server configuration injection because of DocumentRoot variable interpolation (SEC-416).
CVE-2018-20884
2019-08-01
N/A
5.4 MEDIUM
cPanel before 74.0.0 allows stored XSS in the WHM File Restoration interface (SEC-367).
CVE-2018-20883
2019-08-02
N/A
6.5 MEDIUM
cPanel before 74.0.8 allows FTP access during account suspension (SEC-449).
CVE-2018-20882
2019-08-08
N/A
6.8 MEDIUM
cPanel before 74.0.8 allows arbitrary file-write operations in the context of the root account during WHM Force Password Change (SEC-447).
CVE-2018-20881
2019-08-01
N/A
5.4 MEDIUM
cPanel before 74.0.8 allows self stored XSS on the Security Questions login page (SEC-446).
CVE-2018-20880
2020-08-24
N/A
3.3 LOW
cPanel before 74.0.8 mishandles account suspension because of an invalid email_accounts.json file (SEC-445).
« Previous 1 … 1,991 1,992 1,993 1,994 1,995 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE