CVE-2019-14401: High severity cpanel vulnerability
Published Jul 30, 2019
·Updated
cPanel before 78.0.18 allows code execution via an addforward API1 call (SEC-480).
Affected Software
1 affected component
Cpanel Cpanel<78.0.18
Event History
Jul 30, 2019
CVE Published
via MITRE·02:08 PM
Data Sourced
via MITRE·02:08 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14401?
CVE-2019-14401 is classified as a critical vulnerability due to its potential for code execution.
2
How do I fix CVE-2019-14401?
To fix CVE-2019-14401, upgrade cPanel to version 78.0.18 or later.
3
What versions of cPanel are affected by CVE-2019-14401?
CVE-2019-14401 affects cPanel versions prior to 78.0.18.
4
What can be exploited in CVE-2019-14401?
CVE-2019-14401 allows for code execution through an unauthorized API call in cPanel.
5
Is there a workaround for CVE-2019-14401?
There are no known workarounds for CVE-2019-14401; upgrading to the latest version is recommended.