Vulnerabilities > CVE-2016-10772 - 7PK - Security Features vulnerability in Cpanel

047910
CVSS 3.3 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
local
low complexity
cpanel
CWE-254

Summary

cPanel before 60.0.25 does not enforce feature-list restrictions when calling the multilang adminbin (SEC-168).

Vulnerable Configurations

Part Description Count
Application
Cpanel
165

Common Weakness Enumeration (CWE)