← Back

CVE-2017-18425

nvd nist
Published: Aug 2, 2019Modified: Nov 21, 2024

JSON object

Loading...
2.5
Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 1.0 / Impact: 1.4
Source: NVD

Description

In cPanel before 66.0.2, the cpdavd_error_log file can be created with weak permissions (SEC-280).

Affected (6)

Products: Cpanel: Cpanel
1 product
Cpanel
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Cpanel
From 56.0.1 to 56.0.51
From 58.0.3 to 58.0.52
From 60.0.3 to 60.0.45
From 62.0.1 to 62.0.27
From 64.0.0 to 64.0.33
From 66.0.1 to 66.0.2

Related CWEs

References (3)

Source: cve@mitre.org
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory

Timeline

No history available yet.