cPanel before 70.0.23 allows jailshell escape because of incorrect crontab parsing (SEC-382).
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://documentation.cpanel.net/display/CL/70+Change+Log | release notes vendor advisory |