CVE-2017-18441: Medium severity cpanel vulnerability
Published Aug 2, 2019
·Updated
cPanel before 64.0.21 allows demo accounts to redirect web traffic (SEC-245).
Affected Software
5 affected components
Cpanel Cpanel>=55.9999.61<56.0.49
Cpanel Cpanel>=57.9999.48<58.0.49
Cpanel Cpanel>=59.9999.58<60.0.43
Cpanel Cpanel>=61.9999.55<62.0.24
Cpanel Cpanel>=63.9999.74<64.0.21
Event History
Aug 2, 2019
CVE Published
via MITRE·04:17 PM
Data Sourced
via MITRE·04:17 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-18441?
CVE-2017-18441 is classified as a medium severity vulnerability.
2
How do I fix CVE-2017-18441?
To fix CVE-2017-18441, upgrade cPanel to version 64.0.21 or later.
3
What impact does CVE-2017-18441 have on cPanel?
CVE-2017-18441 allows demo accounts in cPanel to redirect web traffic, potentially leading to phishing attacks.
4
Which cPanel versions are affected by CVE-2017-18441?
CVE-2017-18441 affects cPanel versions prior to 64.0.21, including versions 55.9999.61 to 56.0.49, 57.9999.48 to 58.0.49, and others up to 64.0.21.
5
Can CVE-2017-18441 be mitigated without updating?
There are no effective mitigations for CVE-2017-18441 aside from updating to a secure version of cPanel.