PT-2020-11943 · Cpanel · Cpanel

Published

2020-03-17

·

Updated

2020-03-19

·

CVE-2020-10121

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions cPanel versions prior to 84.0.20
Description The issue allows a demo account to achieve code execution via PassengerApps APIs.
Recommendations For versions prior to 84.0.20, update to version 84.0.20 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-10121

Affected Products

Cpanel