First published: Tue Jul 30 2019(Updated: )
cPanel before 76.0.8 unsafely performs PostgreSQL password changes (SEC-366).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cpanel Cpanel | <76.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20862 is classified as a high severity vulnerability.
To fix CVE-2018-20862, upgrade your cPanel software to version 76.0.8 or later.
CVE-2018-20862 affects cPanel versions prior to 76.0.8 that perform PostgreSQL password changes unsafely.
Exploiting CVE-2018-20862 can potentially allow an unauthorized user to change PostgreSQL passwords and access sensitive data.
CVE-2018-20862 was reported as a vulnerability in cPanel before version 76.0.8.