PT-2019-15113 · Cpanel · Cpanel
Published
2019-10-09
·
Updated
2019-10-11
·
CVE-2019-17375
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
cPanel versions prior to 82.0.15
Description
The issue allows API token credentials to persist after an account has been renamed or terminated.
Recommendations
For versions prior to 82.0.15, update to version 82.0.15 or later to resolve the issue.
Fix
Insufficient Session Expiration
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cpanel