Skip to main content

cPanel Multiple Vulnerabilities

Last Update Date: 24 Dec 2013 11:53 Release Date: 24 Dec 2013 3107 Views

RISK: Medium Risk

TYPE: Servers - Web Servers

TYPE: Web Servers

Multiple vulnerabilities were identified in cPanel. A remote authenticated user can execute arbitrary code on the target system.

 

A remote user can conduct cross-site scripting attacks. A remote user can obtain potentially sensitive information.


Impact

  • Remote Code Execution
  • Information Disclosure
  • Data Manipulation

System / Technologies affected

  • Versions 11.36.X, 11.38.X, 11.40.X

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (11.36.2.10, 11.38.2.13, 11.40.1.3, 11.40.0.29).

Vulnerability Identifier


Source


Related Link