CVE-2018-20914
In cPanel before 70.0.23, OpenID providers can inject arbitrary data into cPanel session files (SEC-368).
In cPanel before 70.0.23, OpenID providers can inject arbitrary data into cPanel session files (SEC-368).
HIGH · CVSS 7.3
EPSS 0.00493
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0