Vulnerabilities > CVE-2017-18477 - 7PK - Security Features vulnerability in Cpanel

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
cpanel
CWE-254

Summary

In cPanel before 62.0.4, Exim transports could execute in the context of the nobody account (SEC-206).

Vulnerable Configurations

Part Description Count
Application
Cpanel
189

Common Weakness Enumeration (CWE)