{"cvss":0.0,"datePublished":"2024-12-04","dateUpdated":"2024-12-04","description":"CyberPanel contains an incorrect default permissions vulnerability that allows for authentication bypass and the execution of arbitrary commands using shell metacharacters in the statusfile property.","dueDate":"2024-12-25","id":"CVE-2024-51378","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Known","notes":"https://cyberpanel.net/KnowledgeBase/home/change-logs/ ; https://nvd.nist.gov/vuln/detail/CVE-2024-51378","product":"CyberPanel","requiredAction":"Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.","severity":"CRITICAL","source":"cisa_known_exploited","title":"CyberPanel Incorrect Default Permissions Vulnerability","vendor":"CyberPersons"}