Security
Loading…

CVE-2024-51378

CRITICALCVSS 10.0Known Exploited
Description

CyberPanel contains an incorrect default permissions vulnerability that allows for authentication bypass and the execution of arbitrary commands using shell metacharacters in the statusfile property.

Timeline
Published:October 29th, 2024 11:15 PM
Last modified:August 5th, 2026 5:16 AM
Added to KEV:December 4th, 2024
CVSS Scoring

CVSS v3: 10.0 (CRITICAL)

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Affected Software
From NVD CPE configuration data

Vendors

cyberpanel

Products

cyberpanel
Weaknesses (CWE)

Source: NIST NVD · Data may lag official sources by up to one minute