Port 2095cPanel Webmail

Port 2095 is primarily used by cPanel hosting control panel installations for providing unsecured webmail access. This allows users to access their email through a web interface when connecting to their hosting provider's cPanel-managed services. Despite its convenience, this port transmits data in plaintext, making encrypted alternatives recommended for secure communication..

transport
tcp

single transport

in transit
cleartext

payload readable on path

assignment
unofficial

used by convention

risk
2/10

safe

lookups
11,007

rank 390 of 993 · top 39%

Technical Details

what runs on :2095

Port 2095 is designated for cPanel's webmail services operating over HTTP (non-SSL). It enables clients to retrieve, compose, and manage their email via a browser by interfacing with cPanel's integrated webmail software options such as Horde, Roundcube, or SquirrelMail. Typically, this port redirects users straight to a login portal specifically tailored for email management within a cPanel environment.

Since port 2095 transmits via unencrypted HTTP, it exposes all transmitted content, including login credentials, to potential network sniffing. The non-secure nature of this port is primarily for legacy compatibility or convenience, but most hosting providers strongly encourage migrating to the SSL-secured counterpart on port 2096.

Administrators have the option to disable insecure webmail access altogether or forcibly redirect users attempting to connect via port 2095 to the encrypted service. Integrating SSL offloading or reverse proxy setups can also improve security without compromising user convenience.

Security Information

exposure of :2095

risk score

2/ 10safe

routine exposure. this port is rarely the way in on its own — keep it patched and logged and move on.

web services averages 3.9 across 112 ports — this one sits 1.9 below.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

unofficial

used by convention, not registered — what answers here varies by deployment

reachable over

tcp

every listening transport is another surface to filter at the edge

security overview

Common Vulnerabilities:

  • Susceptibility to credential interception via man-in-the-middle (MitM) attacks due to plaintext data transmission.
  • Exploitation of unpatched webmail applications (e.g., webmail software vulnerabilities).
  • Risk of brute force or dictionary attacks targeting exposed cPanel webmail login pages.

Common Mitigations:

  • Enforcing HTTPS-only access to webmail (using port 2096).
  • Implementing strong password policies coupled with multi-factor authentication (MFA).
  • Regularly updating the cPanel software and associated webmail applications to patch known security issues.
  • Using IP whitelisting or firewall rules to restrict access.
  • Enabling account lockout policies after successive failed login attempts.

the 8 most looked-up other ports in web services — 112 ports carry that label.

risk mix of the 8 listed

  • safe13%
  • caution88%

0 of 8 encrypted