CVE-2020-26108: Critical severity cpanel vulnerability
Published Sep 25, 2020
·Updated
cPanel before 88.0.13 mishandles file-extension dispatching, leading to code execution (SEC-488).
Affected Software
1 affected component
Cpanel Cpanel<88.0.13
Event History
Sep 25, 2020
CVE Published
via MITRE·05:42 AM
Data Sourced
via MITRE·05:42 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this cPanel vulnerability?
The vulnerability ID for this cPanel vulnerability is CVE-2020-26108.
2
What is the severity of CVE-2020-26108?
The severity of CVE-2020-26108 is rated as critical with a severity value of 9.8.
3
What does the vulnerability CVE-2020-26108 do?
CVE-2020-26108 allows for code execution by mishandling file-extension dispatching in cPanel before version 88.0.13.
4
How does CVE-2020-26108 affect cPanel?
CVE-2020-26108 affects cPanel versions before 88.0.13 and can lead to code execution.
5
How can I fix CVE-2020-26108 in cPanel?
To fix CVE-2020-26108, update cPanel to version 88.0.13 or higher.