Skip to main content

cPanel cpanellogd Multiple Vulnerabilities

Last Update Date: 9 Jul 2013 10:37 Release Date: 9 Jul 2013 3866 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

Two vulnerabilities have been identified in cPanel, which can be exploited by malicious users to gain escalated privileges.

 

Two unspecified errors exist within cpanellogd when creating an archive of the user domain's access logs in the user's home directory and can be exploited to take ownership of arbitrary files or directories located on the same file system.


Impact

  • Elevation of Privilege

System / Technologies affected

  • cPanel versions prior to 11.38.1.4, 11.38.0.19, 11.36.1.9, 11.34.1.17, and 11.32.6.8

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 11.38.1.4, 11.38.0.19, 11.36.1.9, 11.34.1.17, or 11.32.6.8.

Vulnerability Identifier

  • No CVE information is available

Source


Related Link