{"id":64077,"date":"2023-12-18T06:24:24","date_gmt":"2023-12-18T12:24:24","guid":{"rendered":"https:\/\/blog.cpanel.com\/?p=64077"},"modified":"2023-12-18T06:24:24","modified_gmt":"2023-12-18T12:24:24","slug":"a-year-in-focus-cpanel-added-value-solutions-in-2023","status":"publish","type":"post","link":"https:\/\/devel.www.cpanel.net\/blog\/announcements\/a-year-in-focus-cpanel-added-value-solutions-in-2023\/","title":{"rendered":"A Year in Focus: cPanel Added Value Solutions in 2023"},"content":{"rendered":"\n

With the year slowly coming to an end, we draw the curtains on yet another chapter in cPanel\u2019s journey of offering added-value solutions that continue to lead the industry forward in web hosting management and security. <\/p>\n\n\n\n

We already introduced some valuable innovations and enhancements, such as the introduction of Manage Team<\/strong><\/a> to further collaboration and control, or the addition of Two-Factor Authentication for Webmail<\/strong><\/a> to further strengthen security, which you can read about here<\/a>. <\/p>\n\n\n\n

However, the time has come to navigate through the latest added value solutions we brought to the table this year. So without further ado, let\u2019s bid farewell to 2023 and recap cPanel\u2019s added value solutions for you.<\/p>\n\n\n\n

cPanel Forum – Migration to Support Portal<\/h2>\n\n\n\n

cPanel Community Forums has been integrated into the cPanel Support Portal<\/strong> with the aim to both simplify and streamline user support. This migration serves as a significant step forward for both platform and users to ensure a simplified user experience with a shared sense of community – a unified hub for knowledge sharing and support.<\/p>\n\n\n\n

The integration offers a range of benefits, including a one-stop-shop for cPanel resources, continuity of familiar technical content, and the fostering of a stronger community overall. Aimed at simplifying communication, this move will make it easier for users to seek assistance, share experiences, and engage directly with the cPanel team.<\/p>\n\n\n\n

Vulnerability Report – No Actions Required by Default<\/h2>\n\n\n\n

Sit back and relax, because the Zero Day Initiative<\/strong> was publicly disclosed, and although six vulnerabilities were identified, no action is required on your part<\/strong>. <\/p>\n\n\n\n

That\u2019s right, based on the latest risk assessment and understanding of defect reports, no further action is required from your side.<\/p>\n\n\n\n

Let\u2019s recap what we currently know about the Zero-Day vulnerabilities, disclosed through the Zero Day Initiative (ZDI):<\/p>\n\n\n\n

CVE-2023<\/strong><\/a>–<\/a><\/strong>42115<\/strong><\/a>: <\/strong>Exim addressed issues specific to external authentication. When using cPanel Exim with the default settings, you are not vulnerable<\/strong> to this issue unless the \u2018external\u2019 authentication driver is explicitly enabled.<\/p>\n\n\n\n

CVE-2023-42114<\/strong><\/a> <\/strong>& <\/strong>CVE-2023-42116<\/strong><\/a>: <\/strong>Fixed vulnerabilities related to SPA (Secure Password Authentication) and NTLM (NT LAN Manager). By default, cPanel Exim is not vulnerable to these issues unless the \u2018SPA\u2019 authentication driver has been activated.<\/strong><\/p>\n\n\n\n

CVE-2023-42117<\/strong><\/a>: <\/strong>Known defect related to proxy protocol usage in Exim. Only posing risk if your mail traffic is being proxied to your server<\/strong>, and the proxy is untrusted. We suggest verifying the trustworthiness of your proxy.<\/p>\n\n\n\n

CVE-2023-42118<\/strong><\/a>: <\/strong>A libspf2 related Vulnerability has been patched by cPanel to protect against integer underflow. Due to limited details in ZDI\u2019s reports, the exact nature of the problem remains unknown.<\/p>\n\n\n\n

CVE-2023-42119<\/strong><\/a>: <\/strong>An <\/strong>issue related to dnsdb was reported. If you do not use smart hosts, you are not at risk. In case you have manually added a dnsdb configuration in any version of cPanel & WHM, please review your settings<\/strong>.<\/p>\n\n\n\n

Experimental Support for the CloudLinux™ 9 OS<\/h2>\n\n\n\n

In cPanel & WHM version 116 we saw the welcome addition of experimental support for the CloudLinux 9 OS<\/strong>. It is important to note that:<\/p>\n\n\n\n