Known Vulnerabilities for products from Directadmin
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Directadmin".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-9625 json | JBMC DirectAdmin 1.55 allows CSRF via the /CMD_ACCOUNT_ADMIN URI to create a new admin account. | 8.8 - HIGH | 2019-03-07 | 2019-03-12 |
| CVE-2017-18045 json | JBMC DirectAdmin before 1.52, when the email_ftp_password_change setting is nonzero, allows remote attackers to obtain access... | 9.8 - CRITICAL | 2018-01-21 | 2019-10-03 |
| CVE-2012-5305 json | Cross-site scripting (XSS) vulnerability in CMD_DOMAIN in JBMC Software DirectAdmin 1.403 allows remote attackers to inject a... | Not Provided | 2012-10-06 | 2026-04-29 |
| CVE-2011-5033 json | Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmin ser... | Not Provided | 2011-12-29 | 2026-04-29 |
| CVE-2007-4830 json | Cross-site scripting (XSS) vulnerability in CMD_BANDWIDTH_BREAKDOWN in DirectAdmin 1.30.2 and earlier allows remote attackers... | Not Provided | 2007-09-12 | 2026-04-23 |
| CVE-2007-3501 json | Cross-site scripting (XSS) vulnerability in CMD_USER_STATS in DirectAdmin 1.30.1 and earlier allows remote attackers to injec... | 4.3 - MEDIUM | 2007-06-30 | 2017-07-29 |
Known software with vulnerabilities from Directadmin
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Directadmin | Directadmin | 0.95 |