VYPR
High severity7.5NVD Advisory· Published Jan 26, 2021· Updated Jun 17, 2026

CVE-2021-26267

CVE-2021-26267

Description

cPanel before 92.0.9 allows a MySQL user (who has an old-style password hash) to bypass suspension (SEC-579).

Affected products

3
  • CPanel/Cpanel2 versions
    cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cpanel:cpanel:*:*:*:*:*:*:*:*range: <92.0.9
    • (no CPE)range: <92.0.9
  • cPanel/cPaneldescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.