Syscp Team maintains a niche hosting control panel product, syscp, that provides administrative interfaces for shared-hosting environments and server management. The observed vulnerability surface reflects application-layer exposure typical of administrative and configuration-management software. Current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Syscp Team over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-0849HIGH scripts/cronscript.php in SysCP 1.2.15 and earlier does not properly quote pathnames in user home directories, which allows local users to gain privileges by placing shell metachar | Feb 8, 2007 | 7.2 | 31 | NO | YES |
CVE-2007-0850HIGH scripts/cronscript.php in SysCP 1.2.15 and earlier includes and executes arbitrary PHP scripts that are referenced by the panel_cronscript table in the SysCP database, which allows | Feb 8, 2007 | 7.5 | 22 | NO | NO |
CVE-2005-2567HIGH PHP remote file inclusion vulnerability in SysCP 1.2.10 and earlier allows remote attackers to execute arbitrary PHP code via the language parameter. | Aug 16, 2005 | 7.5 | 19 | NO | NO |
CVE-2005-2568HIGH Eval injection vulnerability in the template engine for SysCP 1.2.10 and earlier allows remote attackers to execute arbitrary PHP code via a string containing the code within "{" a | Aug 16, 2005 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Syscp Team.
Media articles that mention a CVE ID that affects a product developed by Syscp Team — matched by CVE ID, not by vendor name.