CVE-2024-51567: CyberPersons CyberPanel
EPSS86.6%No. 528 of 1739 in KEV
CVE year2024listed the same year
Same vendor in KEV2
Same product2
| Field | Value |
|---|---|
| Vendor | CyberPersons |
| Product | CyberPanel |
| Name | CyberPanel Incorrect Default Permissions Vulnerability |
| Added to KEV | 2024-11-07 |
| US federal due date | 2024-11-28 |
| Ransomware use | Known |
| CWE | CWE-276 |
CISA description
CyberPanel contains an incorrect default permissions vulnerability that allows a remote, unauthenticated attacker to execute commands as root.
Other entries for this product
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2024-51378 | CyberPersons CyberPanel | 2024-12-04 | 94.7% | Known |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A CyberPersons CyberPanel vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2024-11-07.