Medium severity6.1NVD Advisory· Published Nov 27, 2020· Updated Jun 17, 2026
CVE-2020-29137
CVE-2020-29137
Description
cPanel before 90.0.17 allows self-XSS via the WHM Transfer Tool interface (SEC-577).
Affected products
4- cPanel/cPaneldescription
- Range: <90.0.17
Patches
Vulnerability mechanics
References
2- docs.cpanel.net/changelogs/90-change-log/nvdVendor Advisory
- news.cpanel.com/cpanel-tsr-2020-0007-full-disclosure/nvdVendor Advisory
News mentions
0No linked articles in our index yet.