cPanel / Cgiemail
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-5616 | Cross-site scripting (XSS) vulnerability in cgiemail and cgiecho allows remote attackers to inject arbitrary web script or HTML via the addendum parameter. | MEDIUM | 6.1 | Mar 3, 2017 |
| CVE-2017-5615 | cgiemail and cgiecho allow remote attackers to inject HTTP headers via a newline character in the redirect location. | MEDIUM | 6.1 | Mar 3, 2017 |
| CVE-2017-5613 | Format string vulnerability in cgiemail and cgiecho allows remote attackers to execute arbitrary code via format string specifiers in a template file. | HIGH | 7.8 | Mar 3, 2017 |
Showing 1 to 3 of 3 CVEs