CVE-2020-26109: High severity cpanel vulnerability
Published Sep 25, 2020
·Updated
cPanel before 88.0.13 allows bypass of a protection mechanism that attempted to restrict package modification (SEC-557).
Affected Software
1 affected component
Cpanel Cpanel<88.0.3
Event History
Sep 25, 2020
CVE Published
via MITRE·05:41 AM
Data Sourced
via MITRE·05:41 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this cPanel vulnerability?
The vulnerability ID of this cPanel vulnerability is CVE-2020-26109.
2
What is the severity of CVE-2020-26109?
The severity of CVE-2020-26109 is high with a CVSS score of 7.5.
3
How does CVE-2020-26109 affect cPanel?
CVE-2020-26109 allows bypass of a protection mechanism in cPanel that attempted to restrict package modification.
4
What version of cPanel is affected by CVE-2020-26109?
cPanel version up to and exclusive of 88.0.3 is affected by CVE-2020-26109.
5
Is there a fix available for CVE-2020-26109?
Yes, cPanel version 88.0.13 includes a fix for CVE-2020-26109.