CVE-2017-5614: cPanel
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
Open redirect vulnerability in cgiemail and cgiecho allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the (1) success or (2) failure parameter.
Affected products
- cPanel cPanel: from 11.54.0.0, before 11.54.0.36 (fixed in 11.54.0.36); from 55.9999.61, before 56.0.43 (fixed in 56.0.43); from 57.9999.48, before 58.0.43 (fixed in 58.0.43); from 59.9999.58, before 60.0.35 (fixed in 60.0.35)
Published 2017-03-03. Last modified 2026-06-17.