CVE-2018-20914
01.08.2019, 15:15
In cPanel before 70.0.23, OpenID providers can inject arbitrary data into cPanel session files (SEC-368).
Vendor | Product | Version |
---|---|---|
cpanel | cpanel | 𝑥 < 70.0.23 |
𝑥
= Vulnerable software versions
In cPanel before 70.0.23, OpenID providers can inject arbitrary data into cPanel session files (SEC-368).
Vendor | Product | Version |
---|---|---|
cpanel | cpanel | 𝑥 < 70.0.23 |