cPanel before 70.0.23 exposes Apache HTTP Server logs after creation of certain domains (SEC-406).
The product places sensitive information into files or directories that are accessible to actors who are allowed to have access to the files, but not to the sensitive information.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cpanel | Cpanel | 61.9999.55 (including) | 62.0.42 (excluding) |
Cpanel | Cpanel | 67.9999.64 (including) | 68.0.33 (excluding) |
Cpanel | Cpanel | 69.9999.122 (including) | 70.0.23 (excluding) |