Back to search
CVE-2004-1769
Published: Mar 10, 2005
Modified: Aug 8, 2024
PUBLISHED
Description
The "Allow cPanel users to reset their password via email" feature in cPanel 9.1.0 build 34 and earlier, including 8.x, allows remote attackers to execute arbitrary code via the user parameter to resetpass.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
VU#831534
third-party-advisory
x_refsource_CERT-VN
20040311 cPanel Secuirty Advisory CPANEL-2004:01-01
mailing-list
x_refsource_BUGTRAQ
cpanel-resetpass-execute-commands(15443)
vdb-entry
x_refsource_XF
20040311 Cpanel 8.*.* have a problem ?
mailing-list
x_refsource_BUGTRAQ
9848
vdb-entry
x_refsource_BID
11111
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now