cPanel before 55.9999.141 allows arbitrary file-read operations because of a multipart form processing error (SEC-99).
The product makes files or directories accessible to unauthorized actors, even though they should not be.
Link | Tags |
---|---|
https://documentation.cpanel.net/display/CL/56+Change+Log | release notes vendor advisory |