First published: Wed Aug 11 2021(Updated: )
In cPanel before 96.0.8, weak permissions on web stats can lead to information disclosure (SEC-584).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cpanel Cpanel | <11.98.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38590 is a vulnerability in cPanel before version 96.0.8 that allows weak permissions on web stats, leading to information disclosure.
CVE-2021-38590 has a severity rating of 5.5, which is considered medium.
The vulnerability CVE-2021-38590 affects cPanel versions up to and excluding 96.0.8.
To fix CVE-2021-38590, users should update cPanel to version 96.0.8 or newer.
More information about CVE-2021-38590 can be found in the cPanel change log at https://docs.cpanel.net/changelogs/96-change-log/