Record summary

CVE-2024-53376 has a selected CVSS score of 8.8 (high); EIP currently links 1 repository PoC.

Description

CyberPanel before 2.3.8 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the phpSelection field to the websites/submitWebsiteCreation URI.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 17, 2024 · Source: CVE List

Proofs of concept

1

Repository PoCs

GitHubThottySploity/CVE-2024-53376Repository PoCby ThottySploityStars: 5Not analyzed6 files

161.6 KiB

GitHub

PoC details

References

4