CVE-2020-26101: Critical severity cpanel vulnerability
Published Sep 25, 2020
·Updated
In cPanel before 88.0.3, insecure RNDC credentials are used for BIND on a templated VM (SEC-549).
Affected Software
1 affected component
Cpanel Cpanel<88.0.3
Event History
Sep 25, 2020
CVE Published
via MITRE·05:43 AM
Data Sourced
via MITRE·05:43 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this cPanel vulnerability?
The vulnerability ID for this cPanel vulnerability is CVE-2020-26101.
2
What is the title of this cPanel vulnerability?
The title of this cPanel vulnerability is 'In cPanel before 88.0.3 insecure RNDC credentials are used for BIND on a templated VM (SEC-549).'
3
What is the severity of CVE-2020-26101?
The severity of CVE-2020-26101 is critical with a CVSS score of 9.8.
4
How does CVE-2020-26101 affect cPanel?
CVE-2020-26101 affects cPanel versions before 88.0.3.
5
Is there a fix available for CVE-2020-26101?
Yes, the fix for CVE-2020-26101 is available in cPanel version 88.0.3.