CVE-2024-54679: Medium severity cyberpanel vulnerability
Published Dec 5, 2024
·Updated
CyberPanel (aka Cyber Panel) before 6778ad1 does not require the FilemanagerAdmin capability for restartMySQL actions.
Affected Software
2 affected components
CyberPanel CyberPanel<6778ad1
CyberPanel CyberPanel<=2.3.7
Remediation
Event History
Dec 5, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-54679?
CVE-2024-54679 has been classified as a medium-severity vulnerability.
2
How does CVE-2024-54679 affect CyberPanel?
CVE-2024-54679 allows unauthorized users to restart MySQL without the required FilemanagerAdmin capability.
3
How do I fix CVE-2024-54679?
To fix CVE-2024-54679, update your CyberPanel to version 6778ad1 or higher.
4
Who is affected by CVE-2024-54679?
Any CyberPanel installations prior to version 6778ad1 are vulnerable to CVE-2024-54679.
5
Is CVE-2024-54679 exploitable remotely?
Yes, CVE-2024-54679 can be exploited remotely by unauthorized users targeting affected CyberPanel instances.