CVE-2021-38589: High severity Cpanel Cpanel vulnerability
Published Aug 11, 2021
·Updated
In cPanel before 96.0.13, scripts/fix-cpanel-perl does not properly restrict the overwriting of files (SEC-588).
Affected Software
1 affected component
Cpanel Cpanel<11.96.0.13
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
cPanelto a version that resolves this vulnerability.Fixed in 96.0.13Patch SEC-588
Event History
Aug 11, 2021
CVE Published
via MITRE·10:55 PM
Data Sourced
via MITRE·10:55 PM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-38589.
2
What is the severity of CVE-2021-38589?
The severity of CVE-2021-38589 is high, with a severity value of 8.1.
3
What is the affected software?
The affected software is cPanel version up to exclusive 11.96.0.13.
4
What is the fix for CVE-2021-38589?
To fix CVE-2021-38589, you need to update to cPanel version 96.0.13 or later.
5
Where can I find more information about CVE-2021-38589?
You can find more information about CVE-2021-38589 in the cPanel documentation changelog for version 96.