Product
critical
advisory
Authenticated Remote Code Execution in CyberPanel
1 rule 4 TTPs 3 CVEsCyberPanel version 2.4.3 contains an authenticated remote code execution vulnerability in its remote backup feature that allows an attacker to inject an SSH public key into the root user's authorized_keys file.
CyberPanel +3
1r
4t
3c
updated
high
advisory
CyberPanel 2.1 Authenticated Remote Command Execution via Symlink Exploitation (CVE-2021-47949)
2 rules 1 TTP 1 CVECyberPanel version 2.1 is vulnerable to command execution (CVE-2021-47949) where an authenticated attacker can exploit symlink attacks via the filemanager controller endpoint by manipulating the completeStartingPath parameter in POST requests, leading to sensitive file access and arbitrary shell command execution.
CyberPanel
cve
command execution
symlink
linux
2r
1t
1c