Vulnerability Fixed in cPanel and WHM (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- CRLF injection in session files enables session forgery.
- Login flow vulnerability allows authentication bypass.
- Unauthorized root access to WHM control panel possible.
"cPanel has fixed a vulnerability in cPanel and WHM products, affecting versions after 11.40 and before specific patched releases. The vulnerability involves an authentication bypass caused by CRLF injection in session files, enabling session forgery. Also, the login flow itself is vulnerable, allowing unauthenticated remote attackers to bypass authentication mechanisms and gain unauthorized root access to the WHM control panel."
no comments yet.