Usman Nasir CyberPanel是Usman Nasir个人开发者的一款网站管理控制面板。 Usman Nasir CyberPanel 2.4.3版本存在后置链接漏洞,该漏洞源于文件管理器组件未在解压前验证符号链接,容易受到任意文件读取攻击,允许经过身份验证的攻击者通过上传包含符号链接的特制ZIP归档读取敏感系统文件。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| usmannasir | cyberpanel | ≤ 2.4.3 |
affected |
eca0c3cbeb35af8eaae9fafb094e8ef3cd923643 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| usmannasir | cyberpanel | 0 ~ 2.4.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-71966 | 8.8 HIGH | CyberPanel 2.4.3 Authenticated Command Injection via starRemoteTransfer |
| CVE-2026-71965 | 8.8 HIGH | CyberPanel 2.4.3 Authenticated RCE via Remote Backup Feature |
No comments yet