CVE-2004-0529
The modified suexec program in cPanel, when configured for mod_php and compiled for Apache 1.3.31 and earlier without mod_phpsuexec, allows local users to execute untrusted shared scripts and gain privileges, as demonstrated using untainted scripts such…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.48%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The modified suexec program in cPanel, when configured for mod_php and compiled for Apache 1.3.31 and earlier without mod_phpsuexec, allows local users to execute untrusted shared scripts and gain privileges, as demonstrated using untainted scripts such as (1) proftpdvhosts or (2) addalink.cgi, a different vulnerability than CVE-2004-0490.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 1.48% probability · 72th percentile
- CISA KEV
- Not listed
- Affected
- cluecentral/suexec.patch
- Source
- cve@mitre.org
References
- http://bugzilla.cpanel.net/show_bug.cgi?id=668
- http://marc.info/?l=bugtraq&m=108663003608211&w=2
- http://secunia.com/advisories/11798
- http://securitytracker.com/id?1010411
- http://www.securityfocus.com/bid/10478Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16347
- http://bugzilla.cpanel.net/show_bug.cgi?id=668
- http://marc.info/?l=bugtraq&m=108663003608211&w=2
- http://secunia.com/advisories/11798
- http://securitytracker.com/id?1010411
- http://www.securityfocus.com/bid/10478Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16347
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.