CVE Vulnerabilities

CVE-2004-1769

Published: Mar 11, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The Allow cPanel users to reset their password via email feature in cPanel 9.1.0 build 34 and earlier, including 8.x, allows remote attackers to execute arbitrary code via the user parameter to resetpass.

Affected Software

Name Vendor Start Version End Version
Cpanel Cpanel 5.0 (including) 5.0 (including)
Cpanel Cpanel 5.3 (including) 5.3 (including)
Cpanel Cpanel 6.0 (including) 6.0 (including)
Cpanel Cpanel 6.2 (including) 6.2 (including)
Cpanel Cpanel 6.4 (including) 6.4 (including)
Cpanel Cpanel 6.4.1 (including) 6.4.1 (including)
Cpanel Cpanel 6.4.2 (including) 6.4.2 (including)
Cpanel Cpanel 6.4.2_stable_48 (including) 6.4.2_stable_48 (including)
Cpanel Cpanel 7.0 (including) 7.0 (including)
Cpanel Cpanel 8.0 (including) 8.0 (including)
Cpanel Cpanel 9.0 (including) 9.0 (including)
Cpanel Cpanel 9.1 (including) 9.1 (including)

References