CVE Vulnerabilities

CVE-2016-10846

Published: Aug 01, 2019 | Modified: Aug 08, 2019
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
8.5 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:N
RedHat/V2
RedHat/V3
Ubuntu

cPanel before 11.54.0.4 allows arbitrary file-chown and file-chmod operations during Roundcube database conversions (SEC-79).

Affected Software

Name Vendor Start Version End Version
Cpanel Cpanel 11.48.0.5 (including) 11.48.5.2 (excluding)
Cpanel Cpanel 11.50.0.4 (including) 11.50.4.3 (excluding)
Cpanel Cpanel 11.51.9999.98 (including) 11.52.2.4 (excluding)
Cpanel Cpanel 11.54.0.0 (including) 11.54.0.4 (excluding)

References