cPanel是美国cPanel公司的一套基于Web的自动化主机托管平台。该平台主要用于自动化管理网站和服务器。 cPanel存在安全漏洞,该漏洞源于Cpanel::Nova::Connector中的chmod调用遵循符号链接,可能导致已认证的cPanel用户在其主目录下放置符号链接时设置任意系统文件或目录的root权限,造成拒绝服务或本地权限提升。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| WebPros | cPanel | 11.136.0.0< 11.136.0.9 |
affected |
11.134.0.0< 11.134.0.25 |
affected | ||
11.132.0.0< 11.132.0.31 |
affected | ||
11.130.0.0< 11.130.0.22 |
affected | ||
11.126.0.0< 11.126.0.58 |
affected | ||
11.124.0.0< 11.124.0.37 |
affected | ||
11.118.0.0< 11.118.0.66 |
affected | ||
11.110.0.0< 11.110.0.117 |
affected | ||
| … +3 more rows | |||
| WebPros | cPanel (CloudLinux 6, CentOS 6) | 11.110.0.0< 11.110.0.116 |
affected |
| WebPros | WP Squared | 11.136.1.0< 11.136.1.10 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| WebPros | cPanel | 11.136.0.0 ~ 11.136.0.9 | - |
|
| WebPros | cPanel (CloudLinux 6, CentOS 6) | 11.110.0.0 ~ 11.110.0.116 | - |
|
| WebPros | WP Squared | 11.136.1.0 ~ 11.136.1.10 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-29201 | 8.6 HIGH | cPanel 输入验证错误漏洞 |
| CVE-2026-29202 | cPanel 输入验证错误漏洞 |
No comments yet