Skip to main content

cPanel Multiple Vulnerabilities

Last Update Date: 4 Sep 2013 09:49 Release Date: 4 Sep 2013 3828 Views

RISK: Medium Risk

TYPE: Servers - Web Servers

TYPE: Web Servers

Multiple vulnerabilities have been identified in cPanel, which can be exploited by malicious, local users to disclose potentially sensitive information, bypass certain security restrictions, manipulate certain data, and gain escalated privileges and by malicious users to conduct script insertion attacks, bypass certain security restrictions, and compromise a vulnerable system.


Impact

  • Cross-Site Scripting
  • Denial of Service
  • Elevation of Privilege
  • Remote Code Execution
  • Security Restriction Bypass
  • Information Disclosure
  • Data Manipulation

System / Technologies affected

  • Versions prior to 11.32.7.3, 11.34.2.4, 11.36.2.3, 11.38.2.6, and 11.39.0.15

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 11.32.7.3, 11.34.2.4, 11.36.2.3, 11.38.2.6, or 11.39.0.15

Vulnerability Identifier

  • No CVE information is available

Source


Related Link