CVE-2017-18462: High severity cpanel vulnerability
Published Aug 5, 2019
·Updated
cPanel before 62.0.17 allows a CPHulk one-day ban bypass when IP based protection is enabled (SEC-224).
Affected Software
4 affected components
Cpanel Cpanel>=55.9999.61<56.0.46
Cpanel Cpanel>=57.9999.48<58.0.45
Cpanel Cpanel>=59.9999.58<60.0.39
Cpanel Cpanel>=61.9999.55<62.0.17
Event History
Aug 5, 2019
CVE Published
via MITRE·11:49 AM
Data Sourced
via MITRE·11:49 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-18462?
CVE-2017-18462 has a severity rating that indicates it is a security issue that can potentially allow unauthorized access.
2
How can I fix CVE-2017-18462?
To remediate CVE-2017-18462, upgrade cPanel to version 62.0.17 or later.
3
What type of vulnerability is CVE-2017-18462?
CVE-2017-18462 is a vulnerability that allows bypassing CPHulk IP ban protections in cPanel.
4
Which versions of cPanel are affected by CVE-2017-18462?
CVE-2017-18462 affects cPanel versions prior to 62.0.17, including versions 55.x, 56.x, 57.x, 58.x, 59.x, 60.x, and 61.x.
5
What impact does CVE-2017-18462 have on cPanel users?
CVE-2017-18462 could allow attackers to bypass IP-based protection measures, potentially increasing the risk of unauthorized access.