SEC-581 Summary Self-XSS Vulnerability in EasyApache 4 Save Profile. Security Rating cPanel has assigned this vulnerability a CVSSv3.1 score of 1.8 CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:N Description When attempting to save an EasyApache profile with the same name as an existing profile, the resultant error message was not adequately encoded. This would allow an …
The post cPanel TSR-2021-0002 Full Disclosure first appeared on cPanel Newsroom.