CVE-2020-26114: XSS
Published Sep 25, 2020
·Updated
cPanel before 90.0.10 allows self XSS via the Cron Jobs interface (SEC-573).
Affected Software
1 affected component
Cpanel Cpanel<90.0.10
Event History
Sep 25, 2020
CVE Published
via MITRE·05:40 AM
Data Sourced
via MITRE·05:40 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-26114?
The severity of CVE-2020-26114 is medium with a severity value of 6.1.
2
How does CVE-2020-26114 affect cPanel?
CVE-2020-26114 affects cPanel versions up to and excluding 90.0.10.
3
What is the Common Weakness Enumeration (CWE) associated with CVE-2020-26114?
The Common Weakness Enumeration (CWE) associated with CVE-2020-26114 is CWE-79.
4
Is there a fix available for CVE-2020-26114?
Yes, the fix for CVE-2020-26114 is included in cPanel version 90.0.10.
5
Where can I find more information about CVE-2020-26114?
You can find more information about CVE-2020-26114 in the cPanel 90 Change Log: [https://docs.cpanel.net/changelogs/90-change-log/](https://docs.cpanel.net/changelogs/90-change-log/)