cPanel before 88.0.13 allows bypass of a protection mechanism that attempted to restrict package modification (SEC-557).
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26109
Reference (s):
- https://docs.cpanel.net/changelogs/88-change-log/

