It is reported that cPanel is susceptible to an information disclosure vulnerability in its remote backup function. Attackers can reportedly exploit this vulnerability to retrieve the contents of potentially sensitive files located in the same slice as their home directory. This may aid them in further attacks. Version 9.4.1-RELEASE-64 of cPanel was reported vulnerable. Other versions may also be affected.
It is reported that cPanel is susceptible to an information disclosure vulnerability in its remote backup function. Attackers can reportedly exploit this vulnerability to retrieve the contents of potentially sensitive files located in the same slice as their home directory. This may aid them in further attacks. Version 9.4.1-RELEASE-64 of cPanel was reported vulnerable. Other versions may also be affected.