First published: Mon May 11 2020(Updated: )
cPanel before 86.0.14 allows remote attackers to trigger a bandwidth suspension via mail log strings (SEC-505).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cpanel Cpanel | >=11.78.0.1<11.78.0.47 | |
Cpanel Cpanel | >=11.84.0.0<11.84.0.22 | |
Cpanel Cpanel | >=11.86.0.1<11.86.0.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12784 is a vulnerability in cPanel before version 86.0.14 that allows remote attackers to trigger a bandwidth suspension via mail log strings (SEC-505).
CVE-2020-12784 has a severity rating of medium with a CVSS score of 5.3.
To fix CVE-2020-12784, you need to update cPanel to version 86.0.14 or later.
You can find more information about CVE-2020-12784 in the cPanel Change Log and the cPanel TSR-2020-0002 Full Disclosure.