cPanel before 62.0.4 does not enforce account ownership for has_mycnf_for_cpuser WHM API calls (SEC-210).
References
Link | Resource |
---|---|
https://documentation.cpanel.net/display/CL/62+Change+Log | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2019-08-05 06:15
Updated : 2019-08-12 09:49
NVD link : CVE-2017-18480
Mitre link : CVE-2017-18480
JSON object : View
CWE
CWE-254
7PK - Security Features
Products Affected
cpanel
- cpanel