← Back

CVE-2018-20882

nvd nist
Published: Aug 1, 2019Modified: Nov 21, 2024

JSON object

Loading...
6.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:H
Exploitability: 1.3 / Impact: 5.5
Source: NVD

Description

cPanel before 74.0.8 allows arbitrary file-write operations in the context of the root account during WHM Force Password Change (SEC-447).

Affected (2)

Products: Cpanel: Cpanel
1 product
Cpanel
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Cpanel
From 69.9999.122 to 70.0.57
From 73.9980.0 to 74.0.8

References (3)

Source: cve@mitre.org
ProductRelease Notes
Source: af854a3a-2127-422b-91ae-364da2661108
ProductRelease Notes

Timeline

No history available yet.