CVE-2026-58048
CRITICALWebpros cPanel - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Title source: ruleExploitation Summary
EIP tracks 1 public exploit for CVE-2026-58048. PoCs published by imbas007.
AI-analyzed exploit summary This repository provides a functional exploit for CVE-2026-58048, a critical SQL injection vulnerability in cPanel's database rename operation. The exploit leverages improper preservation of user-controlled SQL mode (ANSI_QUOTES) during privileged MySQL operations, allowing authenticated users to execute arbitrary SQL as MySQL root via backtick injection in database names.
Description
Improper preservation of SQL mode when renaming databases in cPanel allows execution of SQL in root context.
Exploits (1)
This repository provides a functional exploit for CVE-2026-58048, a critical SQL injection vulnerability in cPanel's database rename operation. The exploit leverages improper preservation of user-controlled SQL mode (ANSI_QUOTES) during privileged MySQL operations, allowing authenticated users to execute arbitrary SQL as MySQL root via backtick injection in database names.
References (2)
Scores
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X