PT-2004-2674 · Cpanel · Cpanel

Arab Vieruz

·

Published

2004-03-11

·

Updated

2017-07-11

·

CVE-2004-1770

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions cPanel version 9.1.0
Description The issue allows remote attackers to execute arbitrary code via shell metacharacters in the user parameter on the login page.
Recommendations For version 9.1.0, consider restricting access to the login page until a fix is available, and avoid using shell metacharacters in the user parameter to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1770

Affected Products

Cpanel