CVE-2020-26113: XSS
Published Sep 25, 2020
·Updated
cPanel before 90.0.10 allows self XSS via WHM Manage API Tokens interfaces (SEC-569).
Affected Software
1 affected component
Cpanel Cpanel<90.0.10
Event History
Sep 25, 2020
CVE Published
via MITRE·05:40 AM
Data Sourced
via MITRE·05:40 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this cPanel vulnerability?
The vulnerability ID for this cPanel vulnerability is CVE-2020-26113.
2
What is the severity level of CVE-2020-26113?
CVE-2020-26113 has a severity level of medium (6.1).
3
How does the vulnerability CVE-2020-26113 occur?
CVE-2020-26113 occurs due to a self XSS vulnerability in the WHM Manage API Tokens interfaces in cPanel.
4
How can I check if my cPanel version is affected?
You can check if your cPanel version is affected by comparing it to versions up to and excluding 90.0.10.
5
Where can I find more information about CVE-2020-26113?
You can find more information about CVE-2020-26113 in the cPanel 90 Change Log.