Added |
CPE Configuration |
|
OR
*cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:* versions up to (excluding) 56.0.52
*cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:* versions from (including) 57.9999.48 up to (excluding) 60.0.48
*cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:* versions from (including) 61.9999.55 up to (excluding) 62.0.30
*cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:* versions from (including) 62.0.31 up to (excluding) 64.0.40
*cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:* versions from (including) 64.0.42 up to (excluding) 66.0.23
*cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:* versions from (including) 66.0.24 up to (excluding) 67.9999.103
|
Added |
CVSS V2 |
|
(AV:N/AC:M/Au:N/C:P/I:P/A:N)
|
Added |
CVSS V2 Metadata |
|
Victim must voluntarily interact with attack mechanism
|
Added |
CVSS V3 |
|
AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N
|
Added |
CWE |
|
CWE-601
|
Added |
Reference |
|
https://news.cpanel.com/cpanel-tsr-2017-0005-full-disclosure/ [Vendor Advisory]
|
Changed |
Reference Type |
https://documentation.cpanel.net/display/CL/68+Change+Log No Types Assigned
|
https://documentation.cpanel.net/display/CL/68+Change+Log Release Notes, Vendor Advisory
|