VYPR
High severity7.5NVD Advisory· Published Sep 25, 2020· Updated Jun 17, 2026

CVE-2020-26102

CVE-2020-26102

Description

In cPanel before 88.0.3, an insecure auth policy API key is used by Dovecot on a templated VM (SEC-550).

Affected products

3
  • CPanel/Cpanel2 versions
    cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:*range: <88.0.3
    • (no CPE)
  • CPanel/Dovecotllm-create
    Range: <88.0.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.