cPanel Varnish Plugin Multiple Security Vulnerabilities

Varnish plugin for cPanel is prone to the following remote security vulnerabilities:

1. An arbitrary-file-access vulnerability
2. An unspecified security vulnerability
3. A local privilege-escalation vulnerability

Attackers can exploit these issues to read arbitrary files, conduct spoofing attacks and gain elevated privileges in the context of the affected application. Other attacks are possible.

cPanel Varnish 1.8.4 and prior are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus