PT-2019-13681 · Cpanel · Cpanel

Published

2019-07-30

·

Updated

2019-07-30

·

CVE-2019-14412

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions cPanel versions prior to 78.0.2
Description The issue allows format-string injection in the DCV check domains via dns UAPI.
Recommendations For versions prior to 78.0.2, update to version 78.0.2 or later to resolve the issue.

Fix

Use of Externally-Controlled Format String

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-14412

Affected Products

Cpanel