RACK911 Labs

  • Home
  • Services
    • Penetration Testing
    • IOT Security
    • Tech Security
    • Server Auditing
    • Incident Response
  • Security Advisories
  • Security Research
  • About Us
  • Contact Us

cPanel – Exim Valiases Arbitrary File Read Security Vulnerability

Security Advisories

Product Description: cPanel is an easy-to-use control panel that gives web hosts and the website owners they serve, the ability to quickly and easily manage their servers and websites. Web Host Manager (WHM) is a part of the cPanel software, often used by resellers and system administrators. Vulnerability Discussion: When processing the valiases for a […]

Read More

WHMCS – Admin Application Links CSRF Vulnerability

Security Advisories

Product Description: WHMCS is an all-in-one client management, billing & support solution for online businesses. Handling everything from signup to termination, WHMCS is a powerful business automation tool that puts you firmly in control. Vulnerability Discussion: Due to a CSRF vulnerability within the “Application Links” feature in the admin panel of WHMCS, it is possible […]

Read More

CloudFlare (CPanel) – Cloudflare_data.Yaml Symlink Attack

Security Advisories

Product Description: CloudFlare protects and accelerates any website online. Once your website is a part of the CloudFlare community, its web traffic is routed through our intelligent global network. We automatically optimize the delivery of your web pages so your visitors get the fastest page load times and best performance. We also block threats and […]

Read More

Proxmox (LXC PVE Container) – Arbitrary File Access Vulnerability

Security Advisories

Product Description: Proxmox Virtual Environment is a complete server virtualization management solution, based on KVM and container virtualization. Vulnerability Discussion: The LXC implementation within Proxmox allows a malicious user to perform an attack against the PVE container which if successful would allow access to any file on the master node. Vendor Contact Timeline: 2015-10-24: Vendor […]

Read More

OpenVZ (Vzctl) – SimFS To Ploop Container Takeover Vulnerability

Security Advisories

Product Description: OpenVZ (Open Virtuozzo) is an operating system-level virtualization technology based on the Linux kernel and operating system. OpenVZ allows a physical server to run multiple isolated operating system instances, called containers, virtual private servers (VPSs), or virtual environments (VEs). Vulnerability Discussion: It is possible for a malicious user with a SimFS container to […]

Read More

cPanel – Backup Symlink Privilege Escalation Security Vulnerability

Security Advisories

Product Description: cPanel is an easy-to-use control panel that gives web hosts and the website owners they serve, the ability to quickly and easily manage their servers and websites. Web Host Manager (WHM) is a part of the cPanel software, often used by resellers and system administrators. Vulnerability Discussion: It is possible for a malicious […]

Read More

cPanel – Password Change Hardlink Arbitrary File Write Security Vulnerability

Security Advisories

Product Description: cPanel is an easy-to-use control panel that gives web hosts and the website owners they serve, the ability to quickly and easily manage their servers and websites. Web Host Manager (WHM) is a part of the cPanel software, often used by resellers and system administrators. Vulnerability Discussion: It is possible for a malicious […]

Read More

SolusVM – Reseller Panel Arbitrary Command Execution Vulnerability

Security Advisories

Product Description: Solus Virtual Manager (SolusVM) is a powerful GUI based VPS management system with full OpenVZ, Linux KVM, Xen Paravirtualization and Xen HVM support. SolusVM allows you and your clients to manage a VPS cluster with security & ease. Vulnerability Discussion: Due to user input not being sanitized, it is possible for a malicious […]

Read More

IP.Board 3.3.x & 3.4.x – Messenger Directories Input Validation Failure Vulnerability

Security Advisories

Product Description: Invision Power Board (abbreviated IPB, IP.Board or IP Board) is an Internet forum software produced by Invision Power Services, Inc. It is written in PHP and primarily uses MySQL as a database management system, although support for other database engines is available. Vulnerability Discussion: Due to an input validation failure, it is possible […]

Read More

Webmin – Read Mail Module Hardlink Arbitrary File Access Vulnerability

Security Advisories

Product Description: Webmin is a web-based interface for system administration for Unix. Using any modern web browser, you can setup user accounts, Apache, DNS, file sharing and much more. Webmin removes the need to manually edit Unix configuration files like /etc/passwd, and lets you manage a system from the console or remotely. Vulnerability Discussion: It […]

Read More

Posts navigation

Previous 1 2 3 Next

HOSTINGSECLIST

Get notified of the latest security threats via our mailing list.

https://www.HostingSecList.com

SERVICES

  • Penetration Testing
  • IOT Security
  • Tech Security
  • Server Auditing
  • Incident Response
  • Secure Hosting

CONTACT

110-1110 Palms Airport Drive
Las Vegas, NV 89119
[email protected]

  • Privacy Policy
  • Disclosure Policy