Cgiecho
cPanel · 3 CVEs
CVE-2017-5616
MEDIUM
Cross-site scripting (XSS) vulnerability in cgiemail and cgiecho allows remote attackers to inject arbitrary web script…
Mar 3, 2017
CVE-2017-5615
MEDIUM
cgiemail and cgiecho allow remote attackers to inject HTTP headers via a newline character in the redirect location.
Mar 3, 2017
CVE-2017-5613
HIGH
Format string vulnerability in cgiemail and cgiecho allows remote attackers to execute arbitrary code via format string…
Mar 3, 2017
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2017-5616 | Cross-site scripting (XSS) vulnerability in cgiemail and cgiecho allows remote attackers to inject arbitrary web script or HTML via the addendum parameter. | MEDIUM | 1.17% | Mar 3, 2017 |
| CVE-2017-5615 | cgiemail and cgiecho allow remote attackers to inject HTTP headers via a newline character in the redirect location. | MEDIUM | 1.14% | Mar 3, 2017 |
| CVE-2017-5613 | Format string vulnerability in cgiemail and cgiecho allows remote attackers to execute arbitrary code via format string specifiers in a template file. | HIGH | 2.56% | Mar 3, 2017 |
Showing 1 to 3 of 3 CVEs