Netenberg's vulnerability footprint centers on Fantastico de Luxe, a script-installation utility for web hosting environments, with observed weaknesses concentrated in path-traversal conditions that permit unauthorized directory access. Live severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Netenberg over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-6926MEDIUM Directory traversal vulnerability in autoinstall4imagesgalleryupgrade.php in the Fantastico De Luxe Module for cPanel allows remote attackers to include and execute arbitrary local | Aug 10, 2009 | 6.8 | 28 | NO | YES |
CVE-2008-4181MEDIUM Directory traversal vulnerability in includes/xml.php in the Netenberg Fantastico De Luxe module before 2.10.4 r19 for cPanel, when cPanel PHP Register Globals is enabled, allows r | Sep 23, 2008 | 6.8 | 27 | NO | YES |
CVE-2008-6843MEDIUM Directory traversal vulnerability in index.php in Fantastico, as used with cPanel 11.x, allows remote attackers to read arbitrary files via a .. (dot dot) in the sup3r parameter. | Jul 2, 2009 | 5.0 | 25 | NO | YES |
CVE-2006-1119MEDIUM fantastico in Cpanel does not properly handle when it has insufficient permissions to perform certain file operations, which allows remote authenticated users to obtain the full pa | Mar 9, 2006 | 4.0 | 14 | NO | NO |
Netenberg Fantastico De Luxe 2.8 uses database file names that contain the associated usernames, which allows local users to determine valid usernames and conduct brute force attac | Dec 31, 2004 | 2.1 | 12 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Netenberg.
Media articles that mention a CVE ID that affects a product developed by Netenberg — matched by CVE ID, not by vendor name.