First published: Wed Aug 11 2021(Updated: )
In cPanel before 96.0.13, fix_cpanel_perl lacks verification of the integrity of downloads (SEC-587).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cpanel Cpanel | <96.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38588 is a vulnerability in cPanel before version 96.0.13 that allows unverified downloads in fix_cpanel_perl (SEC-587).
CVE-2021-38588 has a severity score of 8.1 (high).
CVE-2021-38588 allows for unverified downloads in fix_cpanel_perl, which can compromise the integrity of the software.
To fix CVE-2021-38588, users should update cPanel to version 96.0.13 or later.
You can find more information about CVE-2021-38588 in the cPanel change log at https://docs.cpanel.net/changelogs/96-change-log/