Vulnerabilities > Ispconfig > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-27 CVE-2023-46818 Code Injection vulnerability in Ispconfig
An issue was discovered in ISPConfig before 3.2.11p1.
network
low complexity
ispconfig CWE-94
7.2
2020-02-07 CVE-2013-3629 Unspecified vulnerability in Ispconfig 3.0.5.2
ISPConfig 3.0.5.2 has Arbitrary PHP Code Execution
network
low complexity
ispconfig
8.8
2018-10-04 CVE-2018-17984 Incorrect Regular Expression vulnerability in Ispconfig
An unanchored /[a-z]{2}/ regular expression in ISPConfig before 3.1.13 makes it possible to include arbitrary files, leading to code execution.
local
low complexity
ispconfig CWE-185
7.8
2017-12-07 CVE-2017-17384 Improper Privilege Management vulnerability in Ispconfig
ISPConfig 3.x before 3.1.9 allows remote authenticated users to obtain root access by creating a crafted cron job.
network
low complexity
ispconfig CWE-269
8.8