CVE-2021-38590: Medium severity Cpanel Cpanel vulnerability
Published Aug 11, 2021
·Updated
In cPanel before 96.0.8, weak permissions on web stats can lead to information disclosure (SEC-584).
Affected Software
1 affected component
Cpanel Cpanel<11.98.0.8
Event History
Aug 11, 2021
CVE Published
via MITRE·10:54 PM
Data Sourced
via MITRE·10:54 PM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-38590?
CVE-2021-38590 is a vulnerability in cPanel before version 96.0.8 that allows weak permissions on web stats, leading to information disclosure.
2
How severe is CVE-2021-38590?
CVE-2021-38590 has a severity rating of 5.5, which is considered medium.
3
What software is affected by CVE-2021-38590?
The vulnerability CVE-2021-38590 affects cPanel versions up to and excluding 96.0.8.
4
How can CVE-2021-38590 be fixed?
To fix CVE-2021-38590, users should update cPanel to version 96.0.8 or newer.
5
Where can I find more information about CVE-2021-38590?
More information about CVE-2021-38590 can be found in the cPanel change log at https://docs.cpanel.net/changelogs/96-change-log/