cPanel before 60.0.25 allows an open redirect via /cgi-sys/FormMail-clone.cgi (SEC-162).
View Full Alert
Related Posts
CVE-2016-10761Logitech Unifying devices before 2016-02-26 allow keystroke injection, bypassing encryption, aka MouseJack. View Full Alert
CVE-2016-10814cPanel before 57.9999.54 allows demo-mode escape via show_template.stor (SEC-119). View Full Alert
CVE-2016-10768cPanel before 60.0.25 allows file-overwrite operations during preparation for MySQL upgrades (SEC-161). View Full Alert