Weak Permissions on Web Stats in cPanel by cPanel
CVE-2021-38590
5.5MEDIUM
Summary
In cPanel versions prior to 96.0.8, the configuration of web stats allows for weak permissions that can lead to unauthorized access to sensitive information. This flaw could expose critical data to unintended parties, highlighting the need for improved security measures and prompt updates.
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved