CVE-2017-18412

LOW

Cpanel < 56.0.52 - Log Information Exposure

Title source: rule
STIX 2.1

Description

cPanel before 67.9999.103 allows Apache HTTP Server log files to become world-readable because of mishandling on an account rename (SEC-296).

References (2)

Core 2

Scores

CVSS v3 2.5
EPSS 0.0007
EPSS Percentile 20.4%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-532
Status published
Products (1)
cpanel/cpanel 55.9999.61 - 56.0.52
Published Aug 02, 2019
Tracked Since Feb 18, 2026