CyberPanel (aka Cyber Panel) before 6778ad1 does not require the FilemanagerAdmin capability for restartMySQL actions.
References
| Link | Resource |
|---|---|
| https://cyberpanel.net/ | Product |
| https://github.com/hotplugin0x01/CVE-2024-54679 | Exploit Third Party Advisory |
| https://github.com/usmannasir/cyberpanel/commit/6778ad1eaae41f72365da8fd021f9a60369600dc | Patch |
Configurations
History
No history.
Information
Published : 2024-12-05 14:15
Updated : 2025-09-05 13:39
NVD link : CVE-2024-54679
Mitre link : CVE-2024-54679
CVE.ORG link : CVE-2024-54679
JSON object : View
Products Affected
cyberpanel
- cyberpanel
CWE
CWE-862
Missing Authorization
