cPanel before 60.0.25 allows format-string injection in exception-message handling (SEC-171).
References
Link | Resource |
---|---|
https://documentation.cpanel.net/display/CL/60+Change+Log | Release Notes Vendor Advisory |
Configurations
Information
Published : 2019-08-05 06:15
Updated : 2019-08-09 11:15
NVD link : CVE-2016-10773
Mitre link : CVE-2016-10773
JSON object : View
CWE
CWE-134
Use of Externally-Controlled Format String
Products Affected
cpanel
- cpanel