Skip to main content

CyberPanel vulnerabilities

2 published alerts for CyberPersons CyberPanel.

Actively exploited (KEV)Ransomware

CVE-2024-51378

CyberPanel Incorrect Default Permissions Vulnerability

CyberPersons CyberPanel is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2024-51378). CyberPanel contains an incorrect default permissions vulnerability that allows for authentication bypass and the execution of arbitrary commands using shell metacharacters in the statusfile property. CISA remediation due date: 2024-12-25. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)Ransomware

CVE-2024-51567

CyberPanel Incorrect Default Permissions Vulnerability

CyberPersons CyberPanel is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2024-51567). CyberPanel contains an incorrect default permissions vulnerability that allows a remote, unauthenticated attacker to execute commands as root. CISA remediation due date: 2024-11-28. If you need help checking exposure, call (864) 335-9223.