VYPR
Medium severity6.1NVD Advisory· Published Nov 27, 2020· Updated Jun 17, 2026

CVE-2020-29137

CVE-2020-29137

Description

cPanel before 90.0.17 allows self-XSS via the WHM Transfer Tool interface (SEC-577).

Affected products

4
  • CPanel/Cpanel2 versions
    cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:*range: <90.0.17
    • (no CPE)range: <90.0.17
  • cPanel/cPaneldescription
  • Range: <90.0.17

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.