CVE Vulnerabilities

CVE-2004-1770

Published: Mar 11, 2004 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The login page for cPanel 9.1.0, and possibly other versions, allows remote attackers to execute arbitrary code via shell metacharacters in the user parameter.

Affected Software

Name Vendor Start Version End Version
Cpanel Cpanel 5.0 (including) 5.0 (including)
Cpanel Cpanel 5.3 (including) 5.3 (including)
Cpanel Cpanel 6.0 (including) 6.0 (including)
Cpanel Cpanel 6.2 (including) 6.2 (including)
Cpanel Cpanel 6.4 (including) 6.4 (including)
Cpanel Cpanel 6.4.1 (including) 6.4.1 (including)
Cpanel Cpanel 6.4.2 (including) 6.4.2 (including)
Cpanel Cpanel 6.4.2_stable_48 (including) 6.4.2_stable_48 (including)
Cpanel Cpanel 7.0 (including) 7.0 (including)
Cpanel Cpanel 8.0 (including) 8.0 (including)
Cpanel Cpanel 9.0 (including) 9.0 (including)
Cpanel Cpanel 9.1 (including) 9.1 (including)

References