CNNVD-202512-2076 Information

CNNVD ID

CNNVD-202512-2076

CVE-2025-66429

  • CNNVD Published: 2025-12-11

Description (Chinese)

Cpanel是美国Cpanel公司的一套基于Web的自动化主机托管平台。该平台主要用于自动化管理网站和服务器。 cPanel 110版本至132版本存在安全漏洞,该漏洞源于Team Manager API存在目录遍历,可能导致任意文件覆盖和权限提升。

Description (English)

Cpanel is a Web-based automated mainframe hosting platform for the United States company Cpanel. The platform is primarily used to automate the management of websites and servers. There is a security loophole in the versions of cPanel 110 to 132, which stems from the existence of a directory of Team Manager API, which could lead to arbitrary document coverage and increased privileges.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Cpanel

Published

2025-12-11

Last Modified

2026-02-24

References

https://docs.cpanel.net/changelogs/126-change-log/ https://docs.cpanel.net/release-notes/release-notes/

Share on: