cPanel before 80.0.5 allows demo accounts to modify arbitrary files via the extractfile API1 call (SEC-496).
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://documentation.cpanel.net/display/CL/80+Change+Log |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-07-30T14:05:33
Updated: 2024-08-05T00:19:40.573Z
Reserved: 2019-07-29T00:00:00
Link: CVE-2019-14397
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-07-30T15:15:11.297
Modified: 2024-11-21T04:26:40.047
Link: CVE-2019-14397
Redhat
No data.