Total vulnerabilities in the database
cPanel before 80.0.5 allows demo accounts to modify arbitrary files via the extractfile API1 call (SEC-496).
CVSS v3:
CVSS v2:
No CWE or OWASP classifications available.