CVE-2024-51378: CyberPanel Incorrect Default Permissions Vulnerability.
CyberPanel Incorrect Default Permissions Vulnerability. CyberPanel contains an incorrect default permissions vulnerability that allows for authentication bypass and the execution of arbitrary commands using shell metacharacters in the statusfile property.
- CISA KEV-listed (remediation due 2024-12-25)
- used in ransomware campaigns
- EPSS 93.9% (99.9% percentile)